Security Scan Report: online.nationswideinvestmentbank.com

Redirected to:
https://online.nationswideinvestmentbank.com/signup/verify-registratio...
Submitted: Apr 17, 2026, 8:20:41 AMCompleted: Apr 17, 2026, 8:22:04 AMpubliccompleted
Loading additional data...

Summary

This website contacted 3 IPs in 1 country across 3 domains to perform 1 HTTP transaction. The main domain is online.nationswideinvestmentbank.com and was registered NaN years ago.

Submitted URL: https://online.nationswideinvestmentbank.com/signup

Effective URL: https://online.nationswideinvestmentbank.com/signup/verify-registration.phpRedirected

AI Security Verdict

Confirmed Scam

Confidence: 92%

10
Risk Score

Site impersonates Nationwide Investment Bank, collects credentials via a registration form on a brand‑new unranked domain – confirmed phishing scam.

Risk Factors
Brand impersonation
New domain (<90 days) with high‑risk multiplier
Unranked / low‑reputation domain
Credential‑heavy registration form (5 password fields)
Critical JavaScript obfuscation
Domain age information unavailable

Details

Page Title

Registration - Nationwide Investment Bank

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(56%)

Domain Information

Within the commercial generic top-level domain (.com), 'online.nationswideinvestmentbank.com' is registered, featuring subdomain 'online'. Count 25 characters in 'nationswideinvestmentbank' containing 9 vowels alongside 16 consonants. It segments into four words: nations, wide, investment, bank. Median word length is 5.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://online.nationswideinvestmentbank.com/signup

Page Load Overview

4.15s
Total Load Time
38
HTTP Requests
3
Domains
220 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:3,600 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking56% confidence
Type: webapp
Method: ml+structural

All Detected Categories

finance banking
56%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1466.45.23.70United States
AS19853OrangeHost
12142.250.154.95United States
AS15169Google LLC
12152.3.138.25Durham, North Carolina, United States
AS13371Duke University
383--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F87350125CE0586BA0AB4DDD49E4EA1C69F88303ED36058DF65CC7E18FA3E5ECA73215

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:YGCs7PUPlZv8KZe2Tj2GVJM8/zwYeIgQmt4iwA1wkerUPpUj1yEt:ZCn8xyP0yA1wkerKA1yEt

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:73579:4MREEHDaEmQMAgZVAEQCGwJBmEAA0XAS8AahCUHKfJghAAORm/AElJBCVSOAUEJwJAA5cEAOAcDBmCBAtETgHIQIogQAJCYk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0f0f0f0f0f0f0f0f
Perceptual Hash:b1e3dc8f8151ab15
Difference Hash:5b1b1bdbda1b1a1a
Wavelet Hash:0f0f0f0f0f0f0f0f
Color Hash:#4c862d

Scan History

Scan history not available

Unable to load historical scan data