Security Scan Report: www.gallatintn.gov

Site favicon
Submitted: Nov 24, 2025, 10:27:30 PMCompleted: Nov 24, 2025, 10:29:00 PMpubliccompleted
Loading additional data...

Summary

This website contacted 124 IPs in 2 countries across 19 domains to perform 176 HTTP transactions. The main domain is gallatintn.gov and was registered NaN years ago.

Submitted URL: https://www.gallatintn.gov/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Page hosts malicious links and impersonates Google; treat as high‑risk phishing.

Risk Factors
Malicious external link (Indicators of Compromise) to a known malware distributor
Brand impersonation/typosquatting of Google on a non‑Google domain
UNRANKED domain with low reputation while claiming a major brand
External malicious URL embedded in page content
Domain age information unavailable

Details

Page Title

Gallatin, TN | Official Website

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(51%)

Domain Information

The domain 'www.gallatintn.gov' uses the United States government-restricted top-level domain (.gov) with subdomain 'www'. Count 10 characters in 'gallatintn' with 3 vowels and seven consonants. Tokenizing the label suggests three words: gal, latin, tn. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.gallatintn.gov/

Page Load Overview

3.36s
Total Load Time
176
HTTP Requests
19
Domains
5.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,507 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service51% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
51%
government
48%
documentation technical
31%
phishing/scam
20%
forum
20%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
71207.38.72.37United States
AS36489NETSOLUS-NETWORKS
53142.250.185.142United States
AS15169GOOGLE
1854.192.35.46United States
AS16509AMAZON-02
18172.217.23.99United States
AS15169GOOGLE
17104.17.24.14United States
AS13335CLOUDFLARENET
16172.217.18.14United States
AS15169GOOGLE
7142.250.185.74United States
AS15169GOOGLE
4142.250.185.182United States
AS15169GOOGLE
4142.250.184.195United States
AS15169GOOGLE
3216.58.212.138United States
AS15169GOOGLE
176124--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T106040AF492A83436805332C4F5365B18E8769076FB0B5D7AFDFD22B19BD0CE091725AA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ni+36/7gjKv0jit+02B04D/SX5BgltYl4:nRK/Gj10CSo3Yl4

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:177479:EzOSYUJij4aZR0gAgRKygFAcBBCEkZMwhVdFICBCjUxCBYggChLwKFgAAxFwIMBABQ4QAAATJCI0YsOBRBkNA42AACMlxSGB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00c3000006ffffff
Perceptual Hash:aa20fef6574b5901
Difference Hash:8b8793e9ec2b0b36
Wavelet Hash:00c7010006ffffff
Color Hash:#53aca6

Scan History

Scan history not available

Unable to load historical scan data