Security Scan Report: www.mycoveredcalifornia.com

Submitted: Oct 24, 2025, 1:06:05 AMCompleted: Oct 24, 2025, 1:07:25 AMpubliccompleted
Loading additional data...

Summary

This website contacted 95 IPs in 5 countries across 23 domains to perform 159 HTTP transactions. The main domain is mycoveredcalifornia.com and was registered NaN years ago.

Submitted URL: https://www.mycoveredcalifornia.com/login/

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

High‑risk phishing page impersonating Covered California on an untrusted domain

Risk Factors
Brand impersonation on an unranked, non‑official domain
Domain does not belong to the legitimate Covered California organization
Absence of a real login form despite claiming to be a login page
Domain age information unavailable

Details

Page Title

Login - CoveredCalifornia

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

news/blog

(45%)

Domain Information

Within the commercial generic top-level domain (.com), 'www.mycoveredcalifornia.com' is registered; it also runs on subdomain 'www'. The core label 'mycoveredcalifornia' covers 19 characters with eight vowels and eleven consonants. Splitting it apart reveals three words: my, covered, california. The median word length lands at 7 characters. 'my' most often appears in English. You will also see it in Chinese (Pinyin) and Afrikaans contexts.

Screenshot

Security scan screenshot of https://www.mycoveredcalifornia.com/login/

Page Load Overview

39.83s
Total Load Time
159
HTTP Requests
23
Domains
1.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:6,721 chars
Detector Agreement:100%

Website Classification

Primary Category

news/blog45% confidence
Type: spa
Method: ml+structural

All Detected Categories

news/blog
45%
healthcare medical
42%
government public service
39%
corporate
35%
finance banking
27%

Detected Features

Articles
OG: article
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6534.111.60.239Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
1216.58.206.35United States
AS15169GOOGLE
1188.114.97.3United States
AS13335CLOUDFLARENET
1142.250.185.130United States
AS15169GOOGLE
135.214.168.80Groningen, Groningen, Netherlands
AS15169GOOGLE
13.174.46.124United States
AS16509AMAZON-02
144.193.61.236Ashburn, Virginia, United States
AS14618AMAZON-AES
154.224.156.193Ashburn, Virginia, United States
AS14618AMAZON-AES
1142.250.185.162United States
AS15169GOOGLE
134.54.226.84Kansas City, Missouri, United States
AS396982GOOGLE-CLOUD-PLATFORM
15995--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T144944BEB72A095EA06A78DF4236F52C77135CD02F848C4E0B1D1DE989D94E9600AFB7D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:FbkDD44Mjpp1g6mP2zIoN+Y7jIC2zI081Y9:ZkDD44Mjpp1g6mPSIQ+Y78CSIp1Y9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:431591:IUA7GQUywETqRYpAAKQAgBJAQNgoEXoiBWInQAJsZnPiPpMeFABdQYYeHAUZQikFMaCglQBgCALAFAMaYIAJ0JsEgcBYQYQj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffc1c1c1fdfddf
Perceptual Hash:ea259dcb346398ca
Difference Hash:0e69138797090999
Wavelet Hash:ff00c1c1c1c5e5cf
Color Hash:#5391ac

Scan History

Scan history not available

Unable to load historical scan data