Security Scan Report: citicardslogin.org

Submitted: Sep 19, 2026, 8:42:50 PMCompleted: Sep 19, 2026, 8:43:34 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 68%

7
Risk Score

Non-official domain impersonating Citi card login while serving unrelated spam-blog content and linking to a wallet-drainer domain; no login form, but brand misuse and risky outbound link make it unsafe.

Risk Factors (4)
Brand impersonation: bank login brand (Citi) used on a non-official, unrelated domain
Outbound link to a domain reported as a wallet drainer / phishing
Unranked domain (not in Cisco Umbrella top 1M) while claiming a major financial brand
Mixed-topic SEO spam content unrelated to any real Citi service
Domain age information unavailable

Details

Page Title

citi cards login – House Of Business Finance Industry Society

Scan Type

public

Domain Name Analysis

You're looking at domain 'citicardslogin.org' on the non-profit oriented generic top-level domain (.org) with no subdomain. The registrable portion 'citicardslogin' spans 14 characters containing five vowels alongside nine consonants. Splitting it apart reveals three words: citi, cards, login. Median word length is five characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://citicardslogin.org

Page Load Overview

4.25s
Total Load Time
740 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:10,518 chars
Detector Agreement:100%

Website Classification

Primary Category

documentation technical37% confidence
Type: dynamic
Method: ml+structural+ocr_tiebreaker

All Detected Categories

documentation technical
37%
technology software
34%
cryptocurrency
22%
news/blog
20%

Detected Features

Search
Articles

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
7172.96.187.93Secaucus, New Jersey, United States
AS32475Internap Holding LLC
2142.251.14.97Google · CDNUnited States
AS15169Google LLC
245.43.142.4United Kingdom
AS16276OVH SAS
2142.251.20.97Google · CDNUnited States
AS15169Google LLC
245.43.142.3United Kingdom
AS16276OVH SAS
2193.3.184.133Russia
AS50214QWARTA LLC
245.43.142.2United Kingdom
AS16276OVH SAS
2216.239.34.36Google · CDNUnited States
AS15169Google LLC
245.43.142.6United Kingdom
AS16276OVH SAS
239--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DF415293762A9C293300D3957B9BB36CD82F85299B91CF39819716371EE47FA911050C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

24:hxzMaoOvtMn0GNCWU4rY4ragI+Jos/yIuZlgJP4rNbmGhP4rNbQJWCp4raU4rfXi:PzHoN0qCNBcyWYFhYcWCrpWurI

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:2007:AAAAAAQoDAIAIAEAQAAEBAACEACAAAgAgIAAAAAAgICFAAhEIAQAAAAAIwFAAAIAQAAAAAEBQAAAAAAgRBgEAFACAIBACAgI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:9efff7ff871c2020
Perceptual Hash:b6fc411c99531e36
Difference Hash:300c0c102e20ccc6
Wavelet Hash:92fff7ff83002028
Color Hash:#ac7753

Other Hashes

Crop Resistant:300c0c102e20ccc6

Scan History

Scan history not available

Unable to load historical scan data