Security Scan Report: www.esd.whs.mil

Site favicon
Submitted: May 7, 2026, 10:40:26 AMCompleted: May 7, 2026, 10:42:06 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is esd.whs.mil.

Submitted URL: https://www.esd.whs.mil

The Cisco Umbrella rank of the primary domain is #433,993 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

The site shows strong indicators of malware distribution (critical IDS alerts, C2 beacon, obfuscated JS) despite lacking phishing forms; treat as high‑risk and report.

Risk Factors
Critical IDS alerts indicating malware activity and command‑and‑control
High‑risk JavaScript obfuscation and eval() usage
Very low Cisco Umbrella ranking for a site claiming government affiliation
Domain age unknown (potentially brand‑new)
No legitimate content fetched – page content unavailable
Domain age information unavailable

Details

Page Title

Access Denied

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(55%)

Domain Information

Domain 'www.esd.whs.mil' uses the United States military top-level domain (.mil); it also runs on subdomain 'www.esd'. The registrable portion 'whs' spans 3 characters with 0 vowels and 3 consonants. Breaking it apart gives two words: wh, s. Median word length comes out to 1.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.esd.whs.mil

Page Load Overview

1.95s
Total Load Time
50
HTTP Requests
6
Domains
3.3 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en-US
Text Length:4,454 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service55% confidence
Type: spa
Method: ml+structural

All Detected Categories

government public service
55%
corporate
35%
documentation technical
34%

Detected Features

Search
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
5023.36.162.217Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
501--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15CE0C2AFF24A100B8E405D8D79B73641B615606561D676D8DB01B0468116EE9B907429

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:qzxwyEr6VPWxxdGztAc4sI0KTWgJ8Ab05M4a4dn8A4cKqz:kxVRpedg91KRJ+KZ4dnOcj

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:f1b63c78cd8fc9a6a00e8d71681187b7

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1f3fffffffffffff
Perceptual Hash:870707070707fbf9
Difference Hash:e040000000000000
Wavelet Hash:1030f0f000000000
Color Hash:#89e06c

Other Hashes

Crop Resistant:e040000000000000

Scan History

Scan history not available

Unable to load historical scan data