Security Scan Report: gbsciences.com

Redirected to:
https://www.gbsciences.com/
Site favicon
Submitted: Sep 16, 2026, 10:47:29 AMCompleted: Sep 16, 2026, 10:48:40 AMpubliccompleted

This website contacted 7 IPs in 1 country across 8 domains to perform 168 HTTP transactions. The main domain is gbsciences.com and was registered 4 years 1 month ago.

Submitted URL: https://gbsciences.com

Effective URL:

https://www.gbsciences.com/
Redirected

AI Security Verdict

High Risk

Confidence: 82%

8
Risk Score

Legitimate 12-year-old biopharma site appears compromised: it loads malware-flagged xaz2.com (iClickFix, 2 feeds), triggers a CRITICAL EtherHiding malware IDS alert, and connects to a blockchain RPC C2 endpoint.

Risk Factors (4)
Loaded third-party resource xaz2.com flagged as 'iclickfix' malware by two independent threat feeds
CRITICAL IDS alert for EtherHiding exfiltration malware
Blockchain RPC connection consistent with EtherHiding C2 technique
Primary domain flagged as malware loader by threat-intel feed
Domain age information unavailable

Details

Page Title

Home - GB Sciences

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'gbsciences.com' is registered and has no subdomain. The core label 'gbsciences' covers 10 characters with 3 vowels and 7 consonants. Segmentation suggests two words: gb, sciences. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://gbsciences.com

Page Load Overview

25.85s
Total Load Time
6.2 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:4,770 chars
Detector Agreement:100%

Website Classification

Primary Category

healthcare medical81% confidence
Type: spa
Method: ml+structural

All Detected Categories

healthcare medical
81%
government public service
55%
adult content
47%
corporate
35%
technology software
32%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
24173.236.155.18Ashburn, Virginia, United States
AS26347New Dream Network, LLC
24142.251.13.97Google · CDNUnited States
AS15169Google LLC
24104.26.13.152Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
24188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
24142.251.13.95Google · CDNUnited States
AS15169Google LLC
24216.239.34.36Google · CDNUnited States
AS15169Google LLC
24142.251.14.94Google · CDNUnited States
AS15169Google LLC
1687--

Detected Technologies12

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T105F3F9F23CDE882A136F428BA417731D90DB87B6D60595E2F9BB502CB2B4DE33153265

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:eW8wxN7ernIS+F1b1jaaNTGHzDa9tS39Xtp519HxZ6l915lTZFRtlR53NVbj93LX:V8ai0F1lT

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:162791:kEJDIABgLqAkgtMAA+EBKjEYXBCS05mwBwAIATOgLgUyWCHpGO4UTMPUoEvVkWgAQxsgfCYNLSGFhwABwFzAS0T3AQbIEVQj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fff0f0c001f1f8f8
Perceptual Hash:cab4d0af9d85c48e
Difference Hash:2a01800861634b88
Wavelet Hash:fff0f0c001f1f0f0
Color Hash:#40bfb0

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data