Security Scan Report: war.gov

Redirected to: https://www.war.gov/

Site favicon
Submitted: Oct 18, 2025, 5:17:52 AMCompleted: Oct 18, 2025, 5:19:30 AMpubliccompleted
Loading additional data...

Summary

This website contacted 86 IPs in 5 countries across 13 domains to perform 137 HTTP transactions. The main domain is war.gov and was registered NaN years ago.

Submitted URL: https://war.gov/

Effective URL: https://www.war.gov/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Impersonates a U.S. government agency on a new, unranked .gov domain – high‑risk phishing site.

Risk Factors
Brand impersonation of a U.S. government agency
Newly registered domain (<90 days) with official .gov TLD but not legitimate
UNRANKED domain (not in Cisco Umbrella top 1M) combined with brand claims
Poor content quality and misspellings suggesting malicious intent
Domain age information unavailable

Details

Page Title

Home | U.S. Department of War

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(75%)

Domain Information

The domain name 'war.gov' uses the United States government-restricted top-level domain (.gov) and has no subdomain. The registrable portion 'war' spans 3 characters split between one vowel and 2 consonants. Splitting it apart reveals 1 word: war. 'war' most strongly signals Breton. It also appears in German and Chinese (Pinyin) contexts. Net impression: Breton phrase with single-word simplicity.

Screenshot

Security scan screenshot of https://war.gov/

Page Load Overview

44.32s
Total Load Time
137
HTTP Requests
13
Domains
26.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:11,368 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service75% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
75%
government
48%
corporate
35%

Detected Features

Search
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
52142.250.185.238United States
AS15169GOOGLE
123.213.161.209Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
13.174.46.13United States
AS16509AMAZON-02
123.36.162.204Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
123.36.162.208Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
13.174.46.61United States
AS16509AMAZON-02
123.15.160.239Mexico
AS16625AKAMAI-AS
1216.239.34.36United States
AS15169GOOGLE
164.233.184.154United States
AS15169GOOGLE
1142.250.186.67United States
AS15169GOOGLE
13786--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EC24D83598F11033422781D1BAB5BB4EBBE2855BDA578C81B2EC03999FDFE50AC1794C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:KIpgVM3ghoURdmHZvPoc7Hd1gffmg9erCP9nHqCMH:KIpgVM3gZdm5vPoc78ffnerknHqCMH

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:222389:IBZgDMhEAuJBFAICISGQgXRgJQiZrlwWAgwaZHgITgACgACMAQwIFCPBkDBqMIIQRkSFCEcMV0A01BSQgRTkQSgEBEEiIBDB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00f0fcfcf0f00000
Perceptual Hash:c2c2393f3d393b03
Difference Hash:99c1c0c0c105038a
Wavelet Hash:40f9fefef9f10000
Color Hash:#3a5b78

Scan History

Scan history not available

Unable to load historical scan data