Security Scan Report: xd.gov

Site favicon
Submitted: Dec 11, 2025, 12:48:44 AMCompleted: Dec 11, 2025, 12:49:35 AMpubliccompleted
Loading additional data...

Summary

This website contacted 26 IPs in 2 countries across 4 domains to perform 33 HTTP transactions. The main domain is xd.gov and was registered NaN years ago.

Submitted URL: https://xd.gov/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

High‑risk phishing site impersonating the U.S. Census Bureau

Risk Factors
Brand impersonation of U.S. Census Bureau on a non‑official domain
Misuse of .gov top‑level domain
Unranked domain despite claiming government authority
Suspicious OCR text "Anofficialwebsite of the United States Government"
Domain age information unavailable

Details

Page Title

xD - U.S. Census Bureau | Home

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

documentation technical

(58%)

Domain Information

The domain name 'xd.gov' uses the United States government-restricted top-level domain (.gov) and has no subdomain. The core label 'xd' covers 2 characters split between zero vowels and 2 consonants. Tokenizing the label suggests one word: xd. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xd.gov/

Page Load Overview

5.57s
Total Load Time
33
HTTP Requests
4
Domains
1.8 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,261 chars
Detector Agreement:80%

Website Classification

Primary Category

documentation technical58% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

documentation technical
58%
government public service
55%
government
48%
technology software
37%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1185.199.110.153United States
AS54113FASTLY
199.84.152.56United States
AS16509AMAZON-02
1185.199.109.153San Francisco, California, United States
AS54113FASTLY
1185.199.111.153United States
AS54113FASTLY
1185.199.108.153United States
AS54113FASTLY
1216.239.32.36United States
AS15169GOOGLE
199.84.152.87United States
AS16509AMAZON-02
1216.239.34.36United States
AS15169GOOGLE
1142.250.186.104United States
AS15169GOOGLE
199.84.152.69United States
AS16509AMAZON-02
3326--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1105280325440753A633729C5B626BB0DF3C3814EC7625D21B7FC83CA6BC8F60AA36526

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:xzsl/gHZxs5i2GP2G9X/mMEwGJEm6fYXVF:x6mRh/m3h

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:14206:ACAAW2oGFUImECAQEYxEpA2ABJjxCAwaAJMJmKOKjQtAzBuCaBgDMZUhhIIoJImAGHiUkUDFQQlAAISGTCrAZCBAACCbgRmb

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fef0f0f0f0f8ffff
Perceptual Hash:cc4db2b314b6b649
Difference Hash:e013323253132816
Wavelet Hash:78f09090f0c0ffc7
Color Hash:#a4e06c

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data