Security Scan Report: forms.gle

Redirected to: https://docs.google.com/forms/d/e/1FAIpQLSf8HCpHWY4A-lewU-z7a_-PbxLw69JbEs7n0KpL0iRqbn_nVA/viewform?usp=send_form

Site favicon
Submitted: Dec 10, 2025, 5:28:02 AMCompleted: Dec 10, 2025, 5:28:32 AMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 2 countries across 8 domains to perform 26 HTTP transactions. The main domain is docs.google.com.

Submitted URL: https://forms.gle/sy7NHR5ajFvo7dEZ8

Effective URL: https://docs.google.com/forms/d/e/1FAIpQLSf8HCpHWY4A-lewU-z7a_-PbxLw69JbEs7n0KpL0iRqbn_nVA/viewform?usp=send_formRedirected

The Cisco Umbrella rank of the primary domain is #9,953 of the top 1 million websitesTop 10K Site

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

High‑risk phishing using Canada Post branding and Google Forms to harvest personal data

Risk Factors
Brand impersonation on a non‑official domain
Deceptive collection of personal data via Google Form
Misleading delivery‑failed message to lure victims
Domain age information unavailable

Details

Page Title

Delivery Failed

Scan Type

public

Language

🇩🇪

German

(80% confidence)

Category

unknown

(0%)

Domain Information

Domain 'forms.gle' uses the .gle top-level domain. Count 5 characters in 'forms' containing one vowel alongside four consonants. Segmentation suggests 1 word: forms. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://forms.gle/sy7NHR5ajFvo7dEZ8

Page Load Overview

4.05s
Total Load Time
26
HTTP Requests
8
Domains
961 KB
Total Size

Language Analysis

Primary Language

🇩🇪German
Code: de
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:de
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:de
Text Length:773 chars
Detector Agreement:100%

Website Classification

Primary Category

unknown0% confidence
Type: dynamic
Method: structural

All Detected Categories

No categories detected

Detected Features

OG: article

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
12216.58.210.131United States
AS15169GOOGLE
1216.58.210.174United States
AS15169GOOGLE
1142.251.38.67United States
AS15169GOOGLE
1199.36.158.100United States
AS54113FASTLY
1142.251.38.65United States
AS15169GOOGLE
1142.251.38.78United States
AS15169GOOGLE
1216.58.209.202United States
AS15169GOOGLE
12a00:1450:4026:802::200eIreland
AS15169GOOGLE
12a00:1450:4026:803::2003Ireland
AS15169GOOGLE
12620:0:890::100United States
AS54113FASTLY
2615--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BC73D80712116CBAEE6704E2D1455E0A7FAD133BB047617AE2FC1FA33BD68DA111A367

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:96CaUjSTGt0p4nCk0xzYfx/vEM3Vb40+O64vO4WnljiosoS+Wu9:r5/ck2Zia

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:74586:jIcFADzSaAKGQ0JUySiBAaMqQ0QghwAYQUMIAkDAAirAICqSRJCIVSIigSkCQAgA0soRYKcHNxkaiwV4pFEkDYfEiJLRI4NG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:c3c3ffffefffffff
Perceptual Hash:b131676630ccce9e
Difference Hash:8e9e60949c681000
Wavelet Hash:03030f1fc3c3c343
Color Hash:#a1c587

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data