Security Scan Report: www.jhinvestments.com

Submitted: Nov 21, 2025, 2:36:06 PMCompleted: Nov 21, 2025, 2:41:24 PMpubliccompleted
Loading additional data...

Summary

This website contacted 44 IPs in 3 countries across 14 domains to perform 270 HTTP transactions. The main domain is jhinvestments.com and was registered NaN years ago.

Submitted URL: https://www.jhinvestments.com/weekly-market-recap

The Cisco Umbrella rank of the primary domain is #402,217 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 92%

9
Risk Score

Site impersonates Manulife on a low‑ranked domain with many login forms – high‑risk phishing.

Risk Factors
Credential harvesting login forms on a domain that does not belong to the brand
Brand impersonation on a low‑ranking, unrelated domain
Low Cisco Umbrella ranking for a site claiming a well‑known financial institution
Domain age information unavailable

Details

Page Title

Access Denied

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(70%)

Domain Information

You're looking at domain 'www.jhinvestments.com' on the commercial generic top-level domain (.com); it also runs on subdomain 'www'. The core label 'jhinvestments' covers 13 characters containing 3 vowels alongside ten consonants. Breaking it apart gives three words: j, h, investments. Median word length comes out to one character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.jhinvestments.com/weekly-market-recap

Page Load Overview

5.98s
Total Load Time
270
HTTP Requests
14
Domains
11.0 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:95,459 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking70% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
70%
government public service
26%
social_media
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
13092.123.104.22Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
5113.226.244.14United States
AS16509AMAZON-02
39104.102.56.46Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
1213.226.244.28United States
AS16509AMAZON-02
10104.18.86.42United States
AS13335CLOUDFLARENET
9142.250.186.42United States
AS15169GOOGLE
795.100.185.90Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
6104.18.87.42United States
AS13335CLOUDFLARENET
623.36.162.19Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
654.77.123.209Dublin, Leinster, Ireland
AS16509AMAZON-02
27044--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T15AE07DBFF446501A4D0024C598F2310075A738B952EB27C05B02E1568100CF9D40695D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6:qzxwyEr6VPWxxdGztAc4ifxWmWgltLoTM/dbxM4a4d/tLoTM/dKKqz:kxVRpedgTxZltLoTMVeZ4d/tLoTMVKj

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:1:0:96373e83ff3d292a9ccdcc2352b17161

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:1f3fffffffffffff
Perceptual Hash:87070707070bf9fd
Difference Hash:f060000000000000
Wavelet Hash:1030f0f0f0f0f0f0
Color Hash:#53ac5a

Other Hashes

Crop Resistant:f060000000000000

Scan History

Scan history not available

Unable to load historical scan data