Security Scan Report: helpdesk.onlinescotiabank.com

Redirected to:
https://helpdesk.onlinescotiabank.com/
Submitted: Sep 15, 2026, 11:27:16 PMCompleted: Sep 15, 2026, 11:27:58 PMpubliccompleted

This website contacted 16 IPs in 3 countries across 10 domains to perform 21 HTTP transactions. The main domain is helpdesk.onlinescotiabank.com and was registered 35 years ago.

Submitted URL: http://helpdesk.onlinescotiabank.com/

Effective URL:

https://helpdesk.onlinescotiabank.com/
Redirected

AI Security Verdict

Moderate Risk

Confidence: 60%

5
Risk Score

Domain name typosquats Scotiabank but the page is only a parked for-sale listing with ads. No forms, credential capture, or threat-intel hits — suspicious name, no active phishing.

Risk Factors
Typosquat domain name imitating a major financial institution (Scotiabank)
Parked domain monetized with third-party ad/search feeds
Unranked domain despite banking-related typosquat name
Safety Factors
Established domain age of ~17 years
No forms, credential fields, or payment collection on the page
No Indicators of Compromise, YARA, kit-roster, or network IDS detections
No cross-origin credential exfiltration observed
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

Within the commercial generic top-level domain (.com), 'helpdesk.onlinescotiabank.com' is registered and includes subdomain 'helpdesk'. Count 16 characters in 'onlinescotiabank' split between seven vowels and 9 consonants. Word splitting yields two words: online, scotiabank. Median word length is 8 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://helpdesk.onlinescotiabank.com/

Page Load Overview

2.15s
Total Load Time
296 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:63%
Script:Latin
Direction:ltr

Detection Details

Text Length:99 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking40% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
40%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
6103.224.182.239San Diego, California, United States
AS133618Trellian Pty. Limited
118.245.60.53United Kingdom
AS202053UpCloud Ltd
118.245.60.77United States
AS8075Microsoft Corporation
1195.181.170.19Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
1212.102.56.179Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
194.237.80.97Frankfurt am Main, Hesse, Germany
AS202053UpCloud Ltd
187.248.119.252United Kingdom
AS203220Yahoo-UK Limited
179.127.216.203Datacamp · CDNFrankfurt am Main, Hesse, Germany
AS60068Datacamp Limited
1150.171.110.52Azure · CLOUDUnited States
AS8075Microsoft Corporation
2116--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T119E2D50545F1082106A720759E7FAE8577754A23658CEC08BD8C6A40FFADABB4DB27F4

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:lBZBsjBjrAyhtbgt4MiIO/5/9SLOqvgdusrQusrfQwlG:JMM1vgdujuqs

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:33935:HCeZCBwCwkpFCCoTslgAY1AvSEvxgRBEeBCAQCCEAJpoQuUlBJCwQX6QbBxkAQKwAjo0pGSUCilkUBE4BQyVihBULmShAAcg

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000c300000000ff
Perceptual Hash:a8609f4a9f4eb364
Difference Hash:7196969797b3b33b
Wavelet Hash:0042ffc7531918ff
Color Hash:#5f783a

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data