Security Scan Report: www.macoupinvotes.gov

Site favicon
Submitted: Nov 22, 2025, 12:09:42 AMCompleted: Nov 22, 2025, 12:11:25 AMpubliccompleted
Loading additional data...

Summary

This website contacted 19 IPs in 2 countries across 8 domains to perform 100 HTTP transactions. The main domain is macoupinvotes.gov and was registered NaN years ago.

Submitted URL: https://www.macoupinvotes.gov/

AI Security Verdict

Moderate Risk

Confidence: 68%

4
Risk Score

Site shows possible brand impersonation but lacks credential collection; treat as moderate risk.

Risk Factors
Brand impersonation / typosquatting on a .gov domain
Unranked domain status combined with brand claim
Safety Factors
Domain age 1355 days (well‑established)
Official .gov TLD
No password or payment forms present
No malicious Indicators of Compromise detected
Domain age information unavailable

Details

Page Title

Macoupin County, IL Elections | Elections Information

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(78%)

Domain Information

Domain 'www.macoupinvotes.gov' uses the United States government-restricted top-level domain (.gov) and includes subdomain 'www'. The core label 'macoupinvotes' covers 13 characters holding six vowels versus 7 consonants. Breaking it apart gives four words: ma, coup, in, votes. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.macoupinvotes.gov/

Page Load Overview

3.10s
Total Load Time
100
HTTP Requests
8
Domains
3.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:3,733 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service78% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
78%
government
48%
documentation technical
47%
adult content
31%
news/blog
20%

Detected Features

Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
80104.21.23.22United States
AS13335CLOUDFLARENET
1054.212.5.191Boardman, Oregon, United States
AS16509AMAZON-02
5172.67.208.109United States
AS13335CLOUDFLARENET
5216.239.34.36United States
AS15169GOOGLE
52a00:1450:4001:831::2008Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
52a00:1450:4001:82b::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
52a00:1450:4001:80b::200aFrankfurt am Main, Hesse, Germany
AS15169GOOGLE
52606:4700:3030::6815:1716United States
AS13335CLOUDFLARENET
52606:4700:3037::ac43:d06dUnited States
AS13335CLOUDFLARENET
52001:4860:4802:32::36United States
AS15169GOOGLE
10019--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T10233D8B391CE417B322B83DEA171BB18A8A39706CB6149A6B4FE112C5BC4DF5143716F

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:0lQbBuXLY4rRcapQhwJlSKn0CuoDoIoUoWoMNepmuruf+e2oTMDJ2tzj5vURLLqo:0uiUkJ/VxshEtkimI1+4QPzr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:55030:cwBEYwwkAIESxFMkACAoICYeA1JAAPEF4CAg5HA1FJ6ARQjnxBwkwVCSBFzAQEBkBRE0EAQGO8RAgmpYSIADNUinQAhAUEIs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data