Phishing detection: autoconfig.care-bankofamerica.ph
Bank of America Screenshot
Screenshot captured by urlscan.io on 2026-09-07T11:39 UTC: our own render of this page came back blank.
Investigate
Domain
autoconfig.care-bankofamerica.ph5 CT hosts on apex
IP
45.79.222.138
URL
https://autoconfig.care-bankofamerica.ph
Cert
-
Phishunt analysis Beta
32
medium suspicion suspiciousheuristic risk score · not a probability
Why?
- +6.1 Google Safe Browsing
- +5.3 Keyword match
- +5.1 Site cluster
- +4.1 Brand in screenshot
- +3.4 Shared IP cluster
- +2.8 ASN reputation
- +2.0 Young domain
- +1.1 No CSP header
- +1.1 No HSTS header
- +0.6 Long domain
- +0.6 Suspicious TLD
- +0.1 Hyphens
- +0.1 Deep subdomain
15 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Impersonates Bank of America using a subdomain that buries the brand name inside a Philippine .ph TLD domain. Google Safe Browsing flagged it for social engineering and it clusters with other Bank of America phishing pages sharing the same IP infrastructure, targeting banking credentials.
Google Safe BrowsingKeyword matchLong domain
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-08 · confidence 75%
Domain & Network
Whois
Network
Country
United States
Hosting
Akamai Connected Cloud
ASN
AS63949
TLS Cert
-
External detection
Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise