Security Scan Report: 32.jpmorganlogin.com

Submitted: Sep 15, 2026, 8:42:59 PMCompleted: Sep 15, 2026, 8:43:42 PMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 55%

5
Risk Score

Brand-squatting parked domain impersonating JPMorgan Chase's name; currently just a for-sale/ad page with no active credential harvesting, but deceptive hostname warrants caution.

Risk Factors (3)
Deceptive brand-squatting hostname impersonating JPMorgan Chase without authorization
Parked domain monetized via ad/search links, a common stepping stone to future phishing
Unranked domain name inconsistent with the established brand it references
Safety Factors (6)
No credential, login, or payment forms detected on the page
No Indicators of Compromise matches against the page or its loaded resources
No JavaScript malware (YARA) patterns or known phishing kits detected
No network-level IDS alerts
Domain has been registered for over 4 years (established age)
Verdict cited a credential/login form, but DOM analysis found no password field (real or disguised) or payment field, and no other hard signal — credential-phishing framing unsupported; risk adjusted from 5 to 5
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), '32.jpmorganlogin.com' is registered with subdomain '32'. Its registrable label 'jpmorganlogin' stretches across 13 characters containing 4 vowels alongside nine consonants. It segments into 2 words: jpmorgan, login. Expect 6.5 characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://32.jpmorganlogin.com

Page Load Overview

2.17s
Total Load Time
296 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:62%
Script:Latin
Direction:ltr

Detection Details

Text Length:96 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking25% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
25%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
8103.224.182.250San Diego, California, United States
AS133618Trellian Pty. Limited
118.245.60.38United Kingdom
AS202053UpCloud Ltd
118.245.60.77Germany
AS8075Microsoft Corporation
1150.171.110.49Azure · CLOUDUnited States
AS8075Microsoft Corporation
1185.111.111.157Frankfurt am Main, Hesse, Germany
AS212238Datacamp Limited
179.127.216.203Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1195.181.170.18Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
187.248.119.251United Kingdom
AS203220Yahoo-UK Limited
194.237.98.241Frankfurt am Main, Hesse, Germany
AS202053UpCloud Ltd
1150.171.110.54Azure · CLOUDUnited States
AS8075Microsoft Corporation
2114--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11AE2B6144AF20411159B3164EEBE6AC877395A23754CEC08BD8C6A40EFAD9BB4DF67F0

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:YBZBsjBjrAyhtbgt4MiIO/5/9SL5RJWLwLbQflG:wMMDJWUHl

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:34034:BhBaCJwgYGkAPcDRQQm1BEHwAkGBKSoRBMKgFk0VJ2gsEApIHQEIVAOwAQUBASMAeQAEBQYQCI1IthQ4w8ASAE6Ao4ECYAgC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000c300000000ff
Perceptual Hash:a8609f4a9b4ef364
Difference Hash:71969697b7b3b333
Wavelet Hash:0042ffc75b1818ff
Color Hash:#d28579

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data