Security Scan Report: restoredcdc.org

Submitted: Dec 5, 2025, 6:55:57 PMCompleted: Dec 5, 2025, 6:57:20 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 1 country across 2 domains to perform 64 HTTP transactions. The main domain is restoredcdc.org and was registered NaN years ago.

Submitted URL: https://restoredcdc.org/www.cdc.gov/hepatitis-b/hcp/vaccine-administration/index.html

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam impersonating CDC; do not trust the site.

Risk Factors
URL manipulation (history.pushState/replaceState spoofing)
Brand impersonation of CDC on a non‑official domain
Recent domain registration (<1 year) with low reputation
Unranked domain in Cisco Umbrella
Domain age information unavailable

Details

Page Title

Restored CDC | Hepatitis B Vaccine Administration | Hepatitis B | CDC

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government

(95%)

Domain Information

The domain name 'restoredcdc.org' uses the non-profit oriented generic top-level domain (.org). The second-level label 'restoredcdc' is 11 characters long with three vowels and eight consonants. Splitting it apart reveals 2 words: restored, cdc. Median word length comes out to 5.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://restoredcdc.org/www.cdc.gov/hepatitis-b/hcp/vaccine-administration/index.html

Page Load Overview

0.99s
Total Load Time
64
HTTP Requests
2
Domains
882 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-us
0
Detector Agreement:0%

Website Classification

Primary Category

government95% confidence
Type: static
Method: structural

All Detected Categories

government
95%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
59172.67.187.16United States
AS13335CLOUDFLARENET
8104.16.80.73United States
AS13335CLOUDFLARENET
8104.21.88.206United States
AS13335CLOUDFLARENET
82606:4700:3033::6815:58ceUnited States
AS13335CLOUDFLARENET
82606:4700::6810:5049United States
AS13335CLOUDFLARENET
82606:4700::6810:4f49United States
AS13335CLOUDFLARENET
82606:4700:3035::ac43:bb10United States
AS13335CLOUDFLARENET
2104.16.79.73United States
AS13335CLOUDFLARENET
648--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15B533A71B2501A3F852311C1F2EBE32969F6883BE5220442F1BD839B0BD7F946E5B759

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:ji7KkatYjZS3SchfoL3/xi47wk6lQ0CblYzSNYmgkbO:ji7KqjECcZopw7QZblYzS3bO

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:66617:AluFMAQwpAvwUAQYQzSIwEixIKGpkQOBpYiiEIEcV7AAIwrEWghSpbVgIRKLSAFIXCFPzgAASUaUQmQAcGgW5KlIKYboAJGR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000fffffbffffff
Perceptual Hash:e9021249ed96d6ed
Difference Hash:9c9b2d3213131c32
Wavelet Hash:0000c7c3c1f9cfff
Color Hash:#64d22d

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data