Security Scan Report: www.aldorlocal.gov

Redirected to: https://www.alabamainteractive.org/ador_reports/login_input.action

Submitted: Oct 11, 2025, 7:02:44 PMCompleted: Oct 11, 2025, 7:03:34 PMpubliccompleted
Loading additional data...

Summary

This website contacted 26 IPs in 2 countries across 10 domains to perform 33 HTTP transactions. The main domain is alabamainteractive.org and was registered NaN years ago.

Submitted URL: https://www.aldorlocal.gov/

Effective URL: https://www.alabamainteractive.org/ador_reports/login_input.actionRedirected

AI Security Verdict

High Risk

Confidence: 88%

8
Risk Score

High‑risk phishing site impersonating the Alabama Department of Revenue.

Risk Factors
Brand impersonation on non‑official domain
Credential harvesting form on suspicious domain
Excessive redirects (12)
Domain mismatch (gov → org)
Unranked domain in Cisco Umbrella
Domain age information unavailable

Details

Page Title

ADOR Local Reports

Scan Type

public

Language

🇺🇸

English

(70% confidence)

Category

government public service

(75%)

Domain Information

Domain 'www.aldorlocal.gov' uses the United States government-restricted top-level domain (.gov), featuring subdomain 'www'. The core label 'aldorlocal' covers 10 characters containing four vowels alongside 6 consonants. Word splitting yields 3 words: aldo, r, local. The median word length lands at 4 characters. 'aldo' most strongly signals Chinese (Zhuyin). You may catch it in Portuguese and Portuguese (Brazil) as well.

Screenshot

Security scan screenshot of https://www.aldorlocal.gov/

Page Load Overview

6.22s
Total Load Time
33
HTTP Requests
10
Domains
179 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:70%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:70%
Script Type:Latin
HTML Lang Attribute:en
Text Length:104 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service75% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
75%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8206.16.212.66United States
AS394572TYLERTECH-NIC1
1104.26.9.123United States
AS13335CLOUDFLARENET
1142.250.184.234United States
AS15169GOOGLE
118.172.112.71United States
AS16509AMAZON-02
1172.67.75.33United States
AS13335CLOUDFLARENET
118.172.112.75United States
AS16509AMAZON-02
1104.17.24.14United States
AS13335CLOUDFLARENET
1142.250.185.99United States
AS15169GOOGLE
1104.18.10.207United States
AS13335CLOUDFLARENET
1172.217.23.104United States
AS15169GOOGLE
3326--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FBA172235CF65D76020380D66AF1BA097EA4954BD10AC584B8EDC3880FE2FDECD47A1D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

96:m+vPgiZMEBDTpYjYkusldXuU5BwSJxIHSR1ERe1tjU:DHgKlDFo7ltuIwpHSRDS

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:4805:BCaQDQckAJAIiBYIeQCIBBGAkAgIoAABBQAgMCJEEEiAACAURAEAJAAAQoxsUDAAQAICwCDAAApMJBsGSJCoIdAsEJIAUAEi

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000000000000000
Perceptual Hash:8000000000000000
Difference Hash:0000000000000000
Wavelet Hash:0000000000000000
Color Hash:#c1e06c

Other Hashes

Crop Resistant:0000000000000000

Scan History

Scan history not available

Unable to load historical scan data