Security Scan Report: www.dorw.gov.np

Submitted: Oct 9, 2025, 4:19:49 PMCompleted: Oct 9, 2025, 4:21:21 PMpubliccompleted
Loading additional data...

Summary

This website contacted 53 IPs in 2 countries across 9 domains to perform 106 HTTP transactions. The main domain is dorw.gov.np.

Submitted URL: http://www.dorw.gov.np/

AI Security Verdict

Safe Website

Confidence: 92%

2
Risk Score

Site appears legitimate with

Risk Factors
Circular redirect detected
Unranked domain (not in Cisco Umbrella top 1M)
Domain age unknown
Safety Factors
Official .gov.np government domain
Contact information (phone, email) matches Department of Railways
No password or payment fields present
No malicious Indicators of Compromise matches found
Recaptcha protection on contact form
Domain age information unavailable

Details

Page Title

Department of Railways

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government

(95%)

Domain Information

The domain name 'www.dorw.gov.np' uses the Nepalese country-code top-level domain (.gov.np) and includes subdomain 'www'. The second-level label 'dorw' is 4 characters long containing one vowel alongside three consonants. Segmentation suggests two words: do, rw. Average segment length settles at 2 characters. 'do' most often appears in Albanian. Secondary signals appear in Galician and Polish. Taken together, it feels Albanian.

Screenshot

Security scan screenshot of http://www.dorw.gov.np/

Page Load Overview

71.08s
Total Load Time
106
HTTP Requests
9
Domains
10.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,716 chars
Detector Agreement:100%

Website Classification

Primary Category

government95% confidence
Type: dynamic
Method: structural

All Detected Categories

government
95%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2142.250.185.138United States
AS15169GOOGLE
2216.58.206.74United States
AS15169GOOGLE
2142.250.186.170United States
AS15169GOOGLE
2202.45.146.66Nepal
AS45353NITC: IT Agency of Government of Nepal
2142.250.185.196United States
AS15169GOOGLE
2142.250.185.170United States
AS15169GOOGLE
2142.250.185.202United States
AS15169GOOGLE
2142.250.184.202United States
AS15169GOOGLE
2142.251.13.95United States
AS15169GOOGLE
2142.250.186.110United States
AS15169GOOGLE
10653--

Detected Technologies3

JQueryv1.8.3
100%

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14543A36AA0F061370213C1CAE974DF36AED3D517C6170841B6FD1BA92FC2DD69A1326E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:zESUvWt4k97ZdWjjbKVg7pCSeigx2z29eOdgd/KC2YOY:CvAZoKbx2z29eOdw2YOY

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:55888:yjGAKleEdgQAEID2hGNZjIZA3kEhiPBQhVAMgkAhXYoKfyagQvQBFBxGdQItAQkqEIFARqBQQpVhbFasCO0oBGAA7CHHsp4F

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:183c1c181c380008
Perceptual Hash:889d63431c765a3f
Difference Hash:f373333333710969
Wavelet Hash:183d9d9d1db98139
Color Hash:#53ac8d

Scan History

Scan history not available

Unable to load historical scan data