Security Scan Report: midvaleut.gov

Site favicon
Submitted: Oct 17, 2025, 3:30:23 PMCompleted: Oct 17, 2025, 3:31:18 PMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 2 countries across 7 domains to perform 28 HTTP transactions. The main domain is midvaleut.gov and was registered NaN years ago.

Submitted URL: http://midvaleut.gov/

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Site shows malicious IP and circular redirects; treat as high‑risk and do not engage.

Risk Factors
Presence of a malicious IP address associated with the site
Circular redirect loop indicating possible URL manipulation
Unranked domain status combined with municipal branding
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🏳️

UNKNOWN

(0% confidence)

Category

government

(95%)

Domain Information

The domain 'midvaleut.gov' uses the United States government-restricted top-level domain (.gov) without a subdomain. Count 9 characters in 'midvaleut' with four vowels and five consonants. Tokenizing the label suggests three words: mid, v, aleut. Median word length is 3 characters. The linguistic tilt is Slovenian for 'mind'. You may catch it in Czech and Slovak as well.

Screenshot

Security scan screenshot of http://midvaleut.gov/

Page Load Overview

20.08s
Total Load Time
28
HTTP Requests
7
Domains
73 KB
Total Size

Language Analysis

Primary Language

🏳️UNKNOWN
Code: unknown
Confidence:0%

Detection Details

Language Code:unknown
Detection Confidence:0%
0
Detector Agreement:0%

Website Classification

Primary Category

government95% confidence
Type: static
Method: structural

All Detected Categories

government
95%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4188.114.96.3United States
AS13335CLOUDFLARENET
4188.114.97.3United States
AS13335CLOUDFLARENET
4208.91.197.27British Virgin Islands
AS40034CONFLUENCE-NETWORK-INC
4204.11.56.63British Virgin Islands
AS40034CONFLUENCE-NETWORK-INC
42a06:98c1:3120::3United States
AS13335CLOUDFLARENET
42a06:98c1:3121::3United States
AS13335CLOUDFLARENET
286--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17042291546344C408ADD0392EEBC6ED8B7A93D73B85DAA1C76C93F44E2BD6A74D108F1

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:9bb/czN5HazE2Hlz5+FGrDVU9Ob5yzIUIE2HlFBML4vaXM8jVLGAvNE2HlFBML4V:hYyu98CIUyODjyAvLODUz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13107:XIAWQCT0RUECFhvEAwiYCYB0EIQuAVNh4rRAYhCQkwViASRTABAJxCQcEACg60UkJCAFVAz4PbCADcAIaB4KBSyEqmZQMEGA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:06e7f7d352100000
Perceptual Hash:b4b416161e16beb6
Difference Hash:d4869696b6b2a692
Wavelet Hash:06f7f7ff5b181000
Color Hash:#931f5d

Other Hashes

Crop Resistant:d4869696b6b2a692

Scan History

Scan history not available

Unable to load historical scan data