Security Scan Report: jpmorganchase-help.web.app

Submitted: Mar 5, 2026, 11:58:58 PMCompleted: Mar 5, 2026, 11:59:59 PMpubliccompleted
Loading additional data...

Summary

This website contacted 15 IPs in 3 countries across 16 domains to perform 10 HTTP transactions. The main domain is jpmorganchase-help.web.app and was registered NaN years ago.

Submitted URL: https://jpmorganchase-help.web.app

AI Security Verdict

High Risk

Confidence: 85%

8
Risk Score

Impersonates JPMorgan Chase on a non‑official subdomain and harvests emails – high‑risk phishing site.

Risk Factors
Brand impersonation (domain mismatch with claimed JPMorgan brand)
Cross‑origin email exfiltration to JPMorgan endpoint
Subdomain on hosting platform with unknown/likely new age
Unranked domain in Cisco Umbrella
Email‑only credential collection on brand‑impersonating page
Domain age information unavailable

Details

Page Title

Chase Connect®: Commercial Bank Account Management

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(60%)

Domain Information

You're looking at domain 'jpmorganchase-help.web.app' on the application-focused generic top-level domain (.app) with subdomain 'jpmorganchase-help'. The registrable portion 'web' spans 3 characters split between one vowel and two consonants. Segmentation suggests one word: web. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://jpmorganchase-help.web.app

Page Load Overview

14.19s
Total Load Time
91
HTTP Requests
22
Domains
7.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:25,582 chars
Detector Agreement:80%

Website Classification

Primary Category

finance banking60% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

finance banking
60%
corporate business
27%
forum
20%

Detected Features

Search
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
723.213.161.207Germany
635.244.232.184Kansas City, Missouri, United States
AS396982Google LLC
6146.75.122.27Sweden
6216.58.206.35Unknown
623.35.208.130Unknown
6104.18.86.42United States
AS13335Cloudflare, Inc.
6199.36.158.100United States
AS54113Fastly, Inc.
623.213.161.199Unknown
6142.251.208.164UnknownUnknown
6170.148.209.187UnknownUnknown
9115--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T116949421B4F1667600EF78D8A1E1A71678B7C30BDA8527E4F65D93E40FE6896ED2304C

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:ujEmTN6wwJCDDV298gdPKxKse/c8wqt5XrSxUq7qO1+SyNVt+YsIXNNt6EOPSrUV:ujEmTN6wwJCDDV2iPdL5srJ/K

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:423380:pBTDKJCIo0AYFQAExgiSMRLIiExGEFAoEoFDSW7FAkqTABIaBkbqHQ5wggEGRMzqCKiMwDuSOGgJxkhkUUaBMIpBCMYTNGkG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fff3d791d99ffff9
Perceptual Hash:eaa5c2944b959ab5
Difference Hash:7026363333370729
Wavelet Hash:bfb38781838183f9
Color Hash:#d2b379

Scan History

Scan history not available

Unable to load historical scan data