Security Scan Report: docs.google.com

Site favicon
Submitted: Nov 28, 2025, 3:38:41 AMCompleted: Nov 28, 2025, 3:41:16 AMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 2 countries across 7 domains to perform 25 HTTP transactions. The main domain is docs.google.com.

Submitted URL: https://docs.google.com/forms/d/e/1FAIpQLSdNG80lJLUJU16iyE06bxVqQf0UR7xW6CJNIPPf-tloz7gmVA/viewform

The Cisco Umbrella rank of the primary domain is #1 of the top 1 million websitesTop 100 Site

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

Phishing page impersonating Canada Post via a Google Form; do not submit any information.

Risk Factors
Brand impersonation (Canada Post) on an unrelated domain
Phishing lure using fake delivery notification
Use of a Google Form to harvest data without user awareness
Malformed external link (httpsv/www canadapost.com/schedule) intended to mislead
Domain age information unavailable

Details

Page Title

Canada Post Notification

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

unknown

(0%)

Domain Information

Domain 'docs.google.com' uses the commercial generic top-level domain (.com) with subdomain 'docs'. The second-level label 'google' is 6 characters long split between 3 vowels and 3 consonants. Splitting it apart reveals one word: google. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://docs.google.com/forms/d/e/1FAIpQLSdNG80lJLUJU16iyE06bxVqQf0UR7xW6CJNIPPf-tloz7gmVA/viewform

Page Load Overview

0.72s
Total Load Time
25
HTTP Requests
7
Domains
962 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:797 chars
Detector Agreement:50%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9142.250.184.195United States
AS15169GOOGLE
7142.250.186.131United States
AS15169GOOGLE
4142.250.185.174United States
AS15169GOOGLE
3142.250.186.170United States
AS15169GOOGLE
1142.250.186.110United States
AS15169GOOGLE
1142.250.186.67United States
AS15169GOOGLE
1172.217.18.1United States
AS15169GOOGLE
1142.250.186.74United States
AS15169GOOGLE
12a00:1450:4001:82a::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
12a00:1450:4001:810::2003Frankfurt am Main, Hesse, Germany
AS15169GOOGLE
2515--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E673E7070211ACBADE6705E2E545690D3F9D037BB046617AE3FC0FA23BDB8DA111636B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:86CaUjSTGt0p4nCk0xzfEtt3TbCYB7RjI7KjBC5DoK9Npo:QnwEBD

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:74963:dscOsHUKE5BBoEILiQIFw0gyBWoAcOEIcmAACCRAiQ2wQDIYhBEIyK0DD8nRAYMGBwEBLiEoAu0KHSCLFCQIgkCVEhoEj4C1

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:010001ffffffffff
Perceptual Hash:bf2b6ac4d4966268
Difference Hash:4b55174e0a466cc0
Wavelet Hash:00000080ffffbfff
Color Hash:#622d86

Scan History

Scan history not available

Unable to load historical scan data