Security Scan Report: leonardtown.somd.com

Site favicon
Submitted: Oct 26, 2025, 9:31:54 PMCompleted: Oct 26, 2025, 9:32:58 PMpubliccompleted
Loading additional data...

Summary

This website contacted 98 IPs in 2 countries across 22 domains to perform 116 HTTP transactions. The main domain is leonardtown.somd.com and was registered NaN years ago.

Submitted URL: https://leonardtown.somd.com/

AI Security Verdict

Low Risk

Confidence: 92%

2
Risk Score

Legitimate government site; minor risk due to an external malicious link.

Risk Factors
External malicious link to halfstaff.org (Indicators of Compromise)
Domain is UNRANKED in Cisco Umbrella (low ranking) – weak indicator
Safety Factors
Established domain age (over 10,000 days)
Official municipal subdomain (somd.com) with consistent public‑service content
No login, password, or payment fields
Domain age information unavailable

Details

Page Title

The Official Site of Leonardtown, Maryland

Scan Type

public

Language

🇺🇸

English

(50% confidence)

Category

government public service

(69%)

Domain Information

The domain 'leonardtown.somd.com' uses the commercial generic top-level domain (.com), featuring subdomain 'leonardtown'. The registrable portion 'somd' spans 4 characters with 1 vowel and 3 consonants. It segments into 2 words: so, md. Median word length is 2 characters. 'so' most often appears in Chinese (Pinyin). Usage also turns up in English and Italian contexts.

Screenshot

Security scan screenshot of https://leonardtown.somd.com/

Page Load Overview

29.53s
Total Load Time
116
HTTP Requests
22
Domains
7.8 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:50%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:50%
Script Type:Latin
Text Length:5,293 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service69% confidence
Type: static
Method: ml+structural

All Detected Categories

government public service
69%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1938.128.66.39Chicago, Illinois, United States
AS63023AS-GLOBALTELEHOST
1142.250.185.78United States
AS15169GOOGLE
167.225.185.68United States
AS32244LIQUIDWEB
1142.250.184.238United States
AS15169GOOGLE
1104.102.49.187Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
1172.217.18.14United States
AS15169GOOGLE
1142.250.186.46United States
AS15169GOOGLE
116.15.186.122Ashburn, Virginia, United States
AS14618AMAZON-AES
1142.250.185.110United States
AS15169GOOGLE
1216.58.206.78United States
AS15169GOOGLE
11698--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13C3373E3838C1E2B960A0447F122BBA8485F6DB6B3B119E4797710BA2CC5565673C3ED

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:3w6Z5ApeYNk+yJ5ezLnc1Gp9yrrpbbqAmxKwLoSdUyewhQHKei:AtpeYNk+yJ5ezrc1AyrrpbGAmxKwLoSB

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:50444:FwCBYQRgCKtIOoIDAUSCQqBSIIzs1YgxwCPLEnHFjBgjYHADADSihAFAUgolZFApE0xRGymDgCeAAMMI8bN0AZQEI4DADIUA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data