Security Scan Report: spravka.ru

Site favicon
Submitted: May 6, 2026, 8:46:36 PMCompleted: May 6, 2026, 8:48:12 PMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 6 domains to perform 32 HTTP transactions. The main domain is spravka.ru and was registered NaN years ago.

Submitted URL: https://spravka.ru

The Cisco Umbrella rank of the primary domain is #796,878 of the top 1 million websites

AI Security Verdict

Low Risk

Confidence: 78%

2
Risk Score

Site is old and lacks credential forms, but critical IDS alerts show malware activity; treat as low‑risk but avoid using it.

Risk Factors
Critical IDS alerts indicating malware command‑and‑control activity
Large HTTP POST traffic flagged as data exfiltration
Low domain ranking in Cisco Umbrella
Safety Factors
Domain registered since 1998 (very old)
No password or payment fields in any form
No Indicators of Compromise matched in threat intel
No JavaScript malware patterns detected
Domain age information unavailable

Details

Page Title

Городской портал Москвы, справочник организаций

Scan Type

public

Language

🇷🇺

Russian

(80% confidence)

Category

healthcare medical

(39%)

Domain Information

Domain 'spravka.ru' uses the Russian country-code top-level domain (.ru) without a subdomain. Its registrable label 'spravka' stretches across 7 characters containing 2 vowels alongside 5 consonants. Breaking it apart gives 3 words: spr, a, vka. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://spravka.ru

Page Load Overview

3.04s
Total Load Time
34
HTTP Requests
10
Domains
774 KB
Total Size

Language Analysis

Primary Language

🇷🇺Russian
Code: ru
Confidence:80%
Script:Cyrillic
Direction:ltr

Detection Details

Language Code:ru
Detection Confidence:80%
Script Type:Cyrillic
HTML Lang Attribute:ru
Text Length:2,231 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical39% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

healthcare medical
39%
entertainment media
25%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
937.9.64.225Russia
AS13238YANDEX LLC
595.163.52.67Russia
AS47764LLC VK
545.94.143.181Russia
AS52193Eurocontact Veliky Novgorod LLC
587.250.251.119Russia
AS13238YANDEX LLC
5142.251.13.97United States
AS15169Google LLC
577.88.44.55Russia
AS13238YANDEX LLC
346--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17113C5B2917D20BB162326E5FA35B35EB0A7827ECA830E4076FC9EC55FEAC84DD05541

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:j7Bd4Z00FnltTMFR6P+pkud/Dt8pkrN/xzYjG/vzfi8Xb:j7Bd4Z00FnltTMF0+6ud/DqpkrMa/vz1

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:42322:SAABNUCUhSQ7AwIEihIKDAAUoZAlMM0yiCoHiTUVwMbOQNFmEeXKVsEgIGIVEBMHIyV4ICAuANgSAQvCYklBYg4WABAkBdgI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:911000187affffff
Perceptual Hash:c86cae8785bc7869
Difference Hash:232333b0c252521a
Wavelet Hash:9010000878ffffff
Color Hash:#53ac66

Scan History

Scan history not available

Unable to load historical scan data