Security Scan Report: track.production.webgains.team

Redirected to:
https://login.webgains.io/?redirect=https%3A%2F%2Fplatform.webgains.io...
Site favicon
Submitted: May 31, 2026, 11:55:03 PMCompleted: May 31, 2026, 11:56:34 PMpubliccompleted
Loading additional data...

Summary

This website contacted 2 IPs in 2 countries across 2 domains to perform 2 HTTP transactions. The main domain is login.webgains.io and was registered NaN years ago.

Submitted URL: https://track.production.webgains.team

Effective URL: https://login.webgains.io/?redirect=https%3A%2F%2Fplatform.webgains.io%2FRedirected

The Cisco Umbrella rank of the primary domain is #97,659 of the top 1 million websites

AI Security Verdict

Moderate Risk

Confidence: 78%

5
Risk Score

The site shows a login form for Webgains on a mismatched domain with heavily obfuscated JavaScript; while no malware or IoC is detected, the brand‑domain mismatch warrants caution.

Risk Factors
Brand‑domain mismatch (potential brand impersonation)
Critical JavaScript obfuscation score
Cross‑origin credential form (even though SSO, still a credential collection point)
Safety Factors
Domain age >9 years (low inherent risk)
Cisco Umbrella ranking within top 100 K
No Indicators of Compromise matches
No malicious YARA patterns or IDS alerts
Cross‑origin submission identified as legitimate SSO flow
Domain age information unavailable

Details

Page Title

Webgains

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

technology software

(43%)

Domain Information

Within the .team top-level domain, 'track.production.webgains.team' is registered and includes subdomain 'track.production'. The second-level label 'webgains' is 8 characters long holding three vowels versus 5 consonants. Word splitting yields two words: web, gains. The median word length lands at 4 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://track.production.webgains.team

Page Load Overview

3.08s
Total Load Time
20
HTTP Requests
10
Domains
875 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:219 chars
Detector Agreement:67%

Website Classification

Primary Category

technology software43% confidence
Type: webapp
Method: ml+structural

All Detected Categories

technology software
43%
news media journalism
40%
gambling betting
25%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
10108.138.26.27United States
AS16509Amazon.com, Inc.
1016.60.94.183City of London, England, United Kingdom
AS16509Amazon.com, Inc.
202--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15ED244D665A320B49E37465253CE4A1C7A386DA31D069DA971EF450DAF84FFC238332B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:XUmSmemSm8mSmRmSmNXmSm4mSmkmSmewspOy6hQr7BWqHIyLaH:XUmSmemSm8mSmRmSmNXmSm4mSmkmSmek

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:28396:IzjE40BkOC+USCDcCggINAyAQwYjBwkFqloqIYRAiFGAQxUjI1JBoBO4UJEVTGShBAOJGDGjiUVgyKcJyABeKFhImR1QEGkg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:f0f0f0f0f0f0f0f0
Perceptual Hash:ec9ba66c5cd4c02d
Difference Hash:2465642427262626
Wavelet Hash:f0f0f0f0f0f0f0f0
Color Hash:#c59887

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data