Security Scan Report: 2sotki.ru

Site favicon
Submitted: Sep 20, 2026, 5:55:10 AMCompleted: Sep 20, 2026, 5:56:16 AMpubliccompleted

AI Security Verdict

Low Risk

Confidence: 72%

2
Risk Score

Established 18-year-old gardening blog displaying its own brand; no credential/payment forms, no Indicators of Compromise or malware. Heavy ad redirects are a nuisance only.

Risk Factors
Excessive cross-domain redirect chain (31 total, 27 cross-domain) alongside ad-network resources — degrades browsing quality/privacy, not malicious
One cross-origin JS POST target (ip.mehanoid.pro) with no credential handling on the page — common for analytics/tracking, not exfiltration
Safety Factors
Established domain (18 years old)
Self-branding matching the domain — no brand impersonation
No credential, login, or payment form anywhere on the page
No threat-intel, YARA, kit-roster, or IDS detections
Content is genuine gardening/horticulture editorial material across many legitimate topic categories
Domain age information unavailable

Details

Page Title

Две сотки - сайт для огородников и садоводов

Scan Type

public

Domain Name Analysis

The domain '2sotki.ru' uses the Russian country-code top-level domain (.ru). Count 6 characters in '2sotki' holding two vowels versus 3 consonants, notching one digit. Splitting it apart reveals three words: 2, sot, ki. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://2sotki.ru

Page Load Overview

42.98s
Total Load Time
2.8 MB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

HTML Lang Attribute:ru-RU
Text Length:9,590 chars
Detector Agreement:100%

Website Classification

Primary Category

blog personal website68% confidence
Type: spa
Method: ml+structural

All Detected Categories

blog personal website
68%
corporate
25%
news/blog
20%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4189.169.42.183Russia
AS29182JSC IOT
231.129.109.116St Petersburg, St.-Petersburg, Russia
AS198610Beget LLC
288.80.24.248Sweden
AS33837Fredrik Holmqvist
277.88.21.119Yandex · CLOUDMoscow, Moscow, Russia
AS13238YANDEX LLC
2188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
287.250.251.119Yandex · CLOUDRussia
AS13238YANDEX LLC
287.250.250.119Yandex · CLOUDRussia
AS13238YANDEX LLC
290.156.170.209Russia
AS198610Beget LLC
2155.212.203.195Moscow, Moscow, Russia
AS47764LLC VK
12744--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1D2827732E09400567F5FD7ADC1D1B328E5A8A614DB0BA77670F430A85DA86F704BB71D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:2NQp+EAXtECK66Z+dOccy6IhrfaqLrqwRXdSZsTaAh51TNslQCfEGHRmy4kWG2:2EUWCK4dNJ6Ih7a4r/ZdSZUaAhHkWG2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:18693:EgzEAmKBCGDcMYVR3VQRgAQUPIlNgrBAIiUBMBCohAYn5CEmIwQARBoFFoxAwqiwBfBqEIRYiiUIAARhIBCgqOuoIiqpIiAB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8381c3fbc383ffff
Perceptual Hash:e96d9638cdc132cc
Difference Hash:232b1393131b9b62
Wavelet Hash:8181c1f98181fbff
Color Hash:#36931f

Scan History

Scan history not available

Unable to load historical scan data