Security Scan Report: amex.soniashellbanjo.com

Submitted: Dec 13, 2025, 8:03:10 PMCompleted: Dec 13, 2025, 8:03:35 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 1 country across 2 domains to perform 11 HTTP transactions. The main domain is amex.soniashellbanjo.com and was registered NaN years ago.

Submitted URL: https://amex.soniashellbanjo.com/

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

High‑risk phishing site impersonating American Express

Risk Factors
Brand impersonation on an unranked, non‑official domain
Unusual subdomain mimicking American Express
Lack of legitimate content; only a verification message is shown
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🏳️

JP

(80% confidence)

Category

unknown

(0%)

Domain Information

You're looking at domain 'amex.soniashellbanjo.com' on the commercial generic top-level domain (.com), featuring subdomain 'amex'. Its registrable label 'soniashellbanjo' stretches across 15 characters containing six vowels alongside 9 consonants. Segmentation suggests 3 words: sonia, shell, banjo. Average segment length settles at 5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://amex.soniashellbanjo.com/

Page Load Overview

1.96s
Total Load Time
11
HTTP Requests
2
Domains
2 KB
Total Size

Language Analysis

Primary Language

🏳️JP
Code: jp
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:jp
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:jp
Text Length:2 chars
Detector Agreement:0%

Website Classification

Primary Category

unknown0% confidence
Type: static
Method: structural

All Detected Categories

No categories detected

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3104.18.95.41United States
AS13335CLOUDFLARENET
2158.51.96.48Los Angeles, California, United States
AS397270NETINF-TRANSIT-AS
2104.18.94.41United States
AS13335CLOUDFLARENET
22606:4700::6812:5e29United States
AS13335CLOUDFLARENET
22606:4700::6812:5f29United States
AS13335CLOUDFLARENET
115--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T183415D5BA946800B0E2755B59B9FF018782BA01FCB09DC00BE8FC3860F8476D9943ACA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:uOCd6msuesPiiI4KNVfUpMy6E7GlTl0P25t2XPYZQStdrHXcmeuEBGxgeVigdEw3:xfsqiTMTE7MlistjisHXcmCy5iEP

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2295:AEAAAIDAAAgAAKAAIQAIAAAAAQAAQgJAACAQQiAoABAAPBoEAAAAEgAIQAAwBEJAACAAAAAEEAGCABAAoUAQAABAAQMAEAAA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:3fffffffffffffff
Perceptual Hash:870f0f0f0f0f0f0f
Difference Hash:c000000000000000
Wavelet Hash:30f0f0f0f0f0f0f0
Color Hash:#bfbd40

Other Hashes

Crop Resistant:c000000000000000

Scan History

Scan history not available

Unable to load historical scan data