Security Scan Report: wincas.net

Site favicon
Submitted: May 14, 2026, 7:04:24 PMCompleted: May 14, 2026, 7:05:46 PMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 2 countries across 3 domains to perform 57 HTTP transactions. The main domain is wincas.net and was registered NaN years ago.

Submitted URL: https://wincas.net/

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

New, unranked domain impersonates Elon Musk, shows critical C2 beacon and heavily obfuscated JavaScript – high risk of malware distribution.

Risk Factors
Brand impersonation (Elon Musk) on a brand‑new unranked domain
Critical malware C2 beacon detected by IDS
High JavaScript obfuscation and suspicious static analysis patterns
Domain age <7 days (critical multiplier)
Unranked domain (not in Cisco Umbrella top 1 M)
Domain age information unavailable

Details

Page Title

Wincas: Elon Musk’s Official Crypto Casino Powered by Blockchain

Scan Type

public

Language

🇺🇸

English

(54% confidence)

Category

cryptocurrency blockchain

(80%)

Domain Information

Within the network infrastructure generic top-level domain (.net), 'wincas.net' is registered while skipping any subdomain. Its registrable label 'wincas' stretches across 6 characters with two vowels and 4 consonants. It segments into two words: w, incas. Average segment length settles at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://wincas.net/

Page Load Overview

3.03s
Total Load Time
58
HTTP Requests
3
Domains
333 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:54%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:54%
Script Type:Latin
Text Length:295 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain80% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
80%
adult content
71%
technology software
61%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
20146.75.120.157Frankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
19157.240.0.6Frankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
19172.67.183.204United States
AS13335Cloudflare, Inc.
583--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1B0132A6AA510DA26A8928EDCC53D1D3C658FC5BBC794C4B4E38CDF4421D2CF99B498CA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:Y7aUReguj099gChhPhleMeDGCSPxeeWmHtCanrCzZHXe:N0EJGpxFWoCanrwE

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:45517:giBA+EECcBOIpDRcA0ZqKaACrC0AA3JCKoASZIMqCHCCZSaZRCyerhQwrQtYUqjAoIIjXIBI4CdAIMCBROCCEMkIsAQMlFJA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:002660606070f6f0
Perceptual Hash:c33f3cc23cc44ce3
Difference Hash:5cdccacbcbc8c4c5
Wavelet Hash:8666666070f0fff0
Color Hash:#40bfaa

Scan History

Scan history not available

Unable to load historical scan data