Security Scan Report: cityofcrisfield-md.gov

Site favicon
Submitted: Dec 5, 2025, 11:43:35 PMCompleted: Dec 5, 2025, 11:47:04 PMpubliccompleted
Loading additional data...

Summary

This website contacted 166 IPs in 4 countries across 41 domains to perform 474 HTTP transactions. The main domain is cityofcrisfield-md.gov and was registered NaN years ago.

Submitted URL: https://cityofcrisfield-md.gov/

AI Security Verdict

Low Risk

Confidence: 80%

2
Risk Score

Site appears legitimate but contains a suspicious external payment advertisement; proceed carefully.

Risk Factors
Promotional OCR text advertises an external payment site (www.edmundsgovpay.com) not hosted on the official city domain
Safety Factors
Domain age indicates long‑standing legitimate presence
Physical address and municipal information are displayed
No forms collecting passwords, credit‑card data, or personal identifiers
No known malicious Indicators of Compromise
Domain age information unavailable

Details

Page Title

HOME

Scan Type

public

Language

🇺🇸

English

(52% confidence)

Category

legitimate website

(61%)

Domain Information

The domain 'cityofcrisfield-md.gov' uses the United States government-restricted top-level domain (.gov) without a subdomain. Its registrable label 'cityofcrisfield-md' stretches across 18 characters holding five vowels versus 12 consonants, plus 1 hyphen. It segments into 5 words: city, of, cris, field, md. Expect four characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://cityofcrisfield-md.gov/

Page Load Overview

9.66s
Total Load Time
474
HTTP Requests
41
Domains
15.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:52%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:52%
Script Type:Latin
Text Length:3,281 chars
Detector Agreement:100%

Website Classification

Primary Category

legitimate website61% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

legitimate website
61%
other
49%
government
48%
malicious
27%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
188192.0.78.168San Francisco, California, United States
AS2635AUTOMATTIC
144216.58.206.46United States
AS15169GOOGLE
82192.0.77.2San Francisco, California, United States
AS2635AUTOMATTIC
27142.250.186.110United States
AS15169GOOGLE
18142.250.184.195United States
AS15169GOOGLE
17142.250.185.227United States
AS15169GOOGLE
16142.250.186.100United States
AS15169GOOGLE
1466.235.200.22United States
AS13335CLOUDFLARENET
12192.0.77.32San Francisco, California, United States
AS2635AUTOMATTIC
11104.16.41.109United States
AS13335CLOUDFLARENET
474166--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11B6462F2B2022416721F89DFB05BA78E1346AB86D60351B4E1F853BDAFFCE5034D5629

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:5HoxGUMWUWkcPtRjzpdHe3spBz8SQoRe4mnxkiEOe:wUWkcPtZzpdH5pBz8SQoRe4mnxkiEOe

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:312280:BUaBBMWgCAAGB0ZgC5Ri4ZCJABQYJKPJV4QPAMAyEBMTEwA0LQpUUJYk0BBVRQyhA1QEYKdkpAqIAAMOVQGIHI6MxBNpRYIh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Scan History

Scan history not available

Unable to load historical scan data