Security Scan Report: gcms.ddns.net

Redirected to: https://gcms.ddns.net/login

Submitted: Feb 22, 2026, 3:08:04 AMCompleted: Feb 22, 2026, 3:09:16 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 3 HTTP transactions. The main domain is gcms.ddns.net and was registered NaN years ago.

Submitted URL: https://gcms.ddns.net

Effective URL: https://gcms.ddns.net/loginRedirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed credential phishing site; do not enter credentials and report as scam.

Risk Factors
Malicious dynamic DNS domain (ddns.net) associated with the site
Credential collection form on a suspicious domain
Domain age information unavailable

Details

Page Title

gcms.ddns.net

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

government public service

(69%)

Domain Information

The domain 'gcms.ddns.net' uses the network infrastructure generic top-level domain (.net) and includes subdomain 'gcms'. Count 4 characters in 'ddns' split between zero vowels and 4 consonants. Breaking it apart gives two words: d, dns. Expect 2 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://gcms.ddns.net

Page Load Overview

0.82s
Total Load Time
11
HTTP Requests
3
Domains
245 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:60 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service69% confidence
Type: webapp
Method: ml+structural

All Detected Categories

government public service
69%
healthcare medical
47%
gambling betting
45%
news media journalism
41%
technology software
40%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1151.91.51.172France
AS16276OVH SAS
111--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T151048E77329A063986558498F05B43099F20B143F506C9BCB9BCBAD9BFDED06107BB78

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:VfQho9PKBb9Js3q9Jzbs6tlg3SBKwdQWgceIszi2bMy8Olda:yhoC9JSqzzbs6o3Sj3gcrs+2eAA

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:184456:JAsJSMEjPkgbisJ3IRIIQqAAblCAYAMCQEwCImRcALHoAEntipBFkOsA8jnBspUmAsGASoLkgUgWEAyix1wSFRSXzwENQcRE

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffcfc3cfffffffff
Perceptual Hash:b331cccccc633333
Difference Hash:00180c1800000000
Wavelet Hash:3f1f030f00000000
Color Hash:#2dd29e

Other Hashes

Crop Resistant:00180c1800000000

Scan History

Scan history not available

Unable to load historical scan data