Phishing detection: bankofamerica-com-update-login.ph

Bank of America
https://bankofamerica-com-update-login.ph Access site
Screenshot
Screenshot of bankofamerica-com-update-login.ph
Investigate
Domain bankofamerica-com-update-login.ph2 CT hosts on apex

See every phishunt record for this domain

URL https://bankofamerica-com-update-login.ph
Phishunt analysis Beta
37 medium suspicion suspiciousheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +4.1 Brand in screenshot
  • +3.7 Brand in domain label
  • +3.4 Shared IP cluster
  • +3.1 ASN reputation
  • +2.0 Young domain
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.8 Brand + login token
  • +0.6 Long domain
  • +0.6 Suspicious TLD
  • +0.3 Hyphens
16 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Site impersonates Bank of America using a combosquatted domain that appends update-login keywords to the brand name under a .ph TLD. Flagged by Google Safe Browsing as social engineering, it appears designed to harvest online banking credentials.

Brand in domain labelBrand + login tokenGoogle Safe Browsing
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-23 · confidence 88%
Domain & Network
Whois
Network
Country United StatesUnited States
ASN AS63949
TLS Cert -
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Report this phishing
Network / ASN Akamai Connected Cloud
Brand owner Bank of America

Tracked from 2026-08-23 17:24 UTC  ·  Last refreshed 2026-08-25 09:30 UTC