Security Scan Report: whitesidecountyil-elections.gov

Submitted: Dec 3, 2025, 10:32:18 PMCompleted: Dec 3, 2025, 10:34:04 PMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 3 countries across 7 domains to perform 18 HTTP transactions. The main domain is whitesidecountyil-elections.gov and was registered NaN years ago.

Submitted URL: https://whitesidecountyil-elections.gov/

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Site hosts a known malicious IP and lacks legitimate content; treat as high‑risk.

Risk Factors
Association with a known malicious IP address
Unranked domain combined with malicious IP indicator
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🏳️

UNKNOWN

(0% confidence)

Category

government

(95%)

Domain Information

The domain name 'whitesidecountyil-elections.gov' uses the United States government-restricted top-level domain (.gov). The core label 'whitesidecountyil-elections' covers 27 characters holding eleven vowels versus 15 consonants, notching 1 hyphen. Tokenizing the label suggests 4 words: whiteside, county, il, elections. Median word length is 7.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://whitesidecountyil-elections.gov/

Page Load Overview

22.03s
Total Load Time
18
HTTP Requests
7
Domains
77 KB
Total Size

Language Analysis

Primary Language

🏳️UNKNOWN
Code: unknown
Confidence:0%

Detection Details

Language Code:unknown
Detection Confidence:0%
0
Detector Agreement:0%

Website Classification

Primary Category

government95% confidence
Type: static
Method: structural

All Detected Categories

government
95%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10188.114.96.3United States
AS13335CLOUDFLARENET
2208.91.197.27British Virgin Islands
AS40034CONFLUENCE-NETWORK-INC
2188.114.97.3United States
AS13335CLOUDFLARENET
187.248.119.252United Kingdom
AS203220Yahoo-UK Limited
187.248.119.251United Kingdom
AS203220Yahoo-UK Limited
113.107.213.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
113.107.246.44United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
113.107.246.45United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
1204.11.56.63British Virgin Islands
AS40034CONFLUENCE-NETWORK-INC
12a06:98c1:3121::3United States
AS13335CLOUDFLARENET
1815--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1EB5208520630D4242ADC5982ED7CAECB3FA66D33B9DD290DB88D2E1CD09E46F1D129F5

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:9w8xNUIad/K6xwTU1TGXFGoMNcdEg0Rub06fdU1kgZX8LitF3Lr7LGAvvdU1kgZA:6w6d2WZRCxmXVHyAvWXVQz

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:13376:ByAA6EAwq9usDpCQUAob1QkSEA+QzGAEgkJ5UicZUaWgkSIMRg4hgBiGKADAgwxkPJwwkHCEMAbQAJChYDD2GBwwLKU0ZKiT

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f9700001b9013131
Perceptual Hash:eac3c3cb983c1c3c
Difference Hash:c1c9354553cd53d1
Wavelet Hash:f9710101f97df941
Color Hash:#40bf59

Scan History

Scan history not available

Unable to load historical scan data