Security Scan Report: evmenov37.ru

Site favicon
Submitted: Oct 8, 2026, 4:08:11 AMCompleted: Oct 8, 2026, 4:10:26 AMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 72%

2
Risk Score

Aged Russian paranormal/news content site with no credential forms, no impersonation, and no malware or threat-intel hits. Only notable signal is a heavy ad redirect chain; otherwise appears to be a normal content publisher.

Risk Factors (2)
Excessive redirect chain (42 redirects, 36 cross-domain) — possibly ad-network routing or misconfigured redirects
Domain is unranked in Cisco Umbrella top 1M
Safety Factors (5)
Long-established domain (>5 years old)
No credential or payment forms present
No malware, IoC, IDS or YARA detections
Self-branded content site (title/meta match domain), no impersonation of another entity
Cross-origin requests are analytics/ad tech (giraff.io, Google Analytics, DoubleClick) — normal for content publishers
Domain age information unavailable

Details

Page Title

Непознанное - Грань между мифом и реальностью тоньше, чем ты думаешь.

Scan Type

public

Domain Name Analysis

The domain 'evmenov37.ru' uses the Russian country-code top-level domain (.ru). The second-level label 'evmenov37' is 9 characters long containing three vowels alongside 4 consonants; it also includes 2 digits. It segments into four words: ev, me, nov, 37. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://evmenov37.ru

Page Load Overview

75.08s
Total Load Time
3.1 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru-RU
Text Length:9,626 chars
Detector Agreement:100%

Website Classification

Primary Category

social media network97% confidence
Type: spa
Method: ml+structural

All Detected Categories

social media network
97%
healthcare medical
83%
entertainment media
81%
education learning
46%
technology software
40%

Detected Features

OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6080.74.25.133Amsterdam, North Holland, Netherlands
AS216154Clodo Cloud Service Co. L.L.C
2142.251.110.95Google · CDNUnited States
AS15169Google LLC
2142.251.110.97Google · CDNUnited States
AS15169Google LLC
292.53.64.248Moscow, Moscow, Russia
AS49505JSC Selectel
2104.18.95.41Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2192.0.76.3San Francisco, California, United States
AS2635Automattic, Inc
288.212.202.52Moscow, Moscow, Russia
AS39134Edinaya Set Limited Liability Company
277.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
2142.251.14.94Google · CDNUnited States
AS15169Google LLC
291.206.14.61Moscow, Moscow, Russia
AS49505JSC Selectel
18664--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E294C7E2A7D20436157BB0CA96027F0DA4A2051FDD19C9E1F7BD32A9E7FED42B342605

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:w4Ac41CFwr+DfYiyv6APVid/14a3KKSBbVa7G9Ou+4U1I1rFmRRW5Vct2xmKUnSt:Cqyvm7GHmKD+I

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:445224:ULYRASgBanWA5yYgntBEAIEC2AEV0lZwEKQpylCBBAQAA9IBAYhIA4JQDQhIGgSgqBNggEY3AOF4Y0BBB9QuCI9IgCyhgQQC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data