Security Scan Report: havilandks.gov

Submitted: Oct 17, 2025, 12:50:06 AMCompleted: Oct 17, 2025, 12:51:20 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 1 country across 3 domains to perform 148 HTTP transactions. The main domain is havilandks.gov and was registered NaN years ago.

Submitted URL: https://havilandks.gov/

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Site links to a known malicious domain, resulting in a high risk rating.

Risk Factors
External malicious domain link (assets.zyrosite.com) detected
UNRANKED domain with low reputation
Domain age information unavailable

Details

Page Title

Home

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(62%)

Domain Information

Within the United States government-restricted top-level domain (.gov), 'havilandks.gov' is registered and has no subdomain. The second-level label 'havilandks' is 10 characters long holding 3 vowels versus seven consonants. Word splitting yields four words: h, avil, and, ks. Average segment length settles at 2.5 characters. The linguistic tilt is Breton for 'h'. Secondary signals appear in English and Chinese (Pinyin). Overall, 'havilandks.gov' reads as Breton.

Screenshot

Security scan screenshot of https://havilandks.gov/

Page Load Overview

45.93s
Total Load Time
148
HTTP Requests
3
Domains
1.6 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:2,112 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service62% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

government public service
62%
government
48%
education learning
40%
corporate
25%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2834.120.137.41Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
24104.18.43.2United States
AS13335CLOUDFLARENET
24172.64.144.254United States
AS13335CLOUDFLARENET
242a06:98c1:3101::ac40:90feUnited States
AS13335CLOUDFLARENET
242606:4700:4409::6812:2b02United States
AS13335CLOUDFLARENET
242600:1901:0:84ef::Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
1486--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F9543C27C9B34202222FB9A0D476B75DB1A3F71F86A567D80831527213E2E7F317B598

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:iwDWvvyS9UGEsozObvT9BLTHu2HF/e99zIZzUxgtnlPfzeUzm1Y43ND5:PPqUGz9Mv99cZzUxgtnlPfzeUzcnv

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:280655:mUNAggAxAARGZBkCUQEJEBWQ6CKwFC4OQEoRAIwARJ8BBIYpyEGKRPcDoWAyZDGjqhSCgSNEIQOHgAQDIgDoYGggBIKCUimi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c1ffff810083ffff
Perceptual Hash:b985c46669b9ba46
Difference Hash:0fc4391b0f1f3893
Wavelet Hash:00ffdf010081dffb
Color Hash:#53ac8d

Scan History

Scan history not available

Unable to load historical scan data