beocas[.]com
Análisis de phishing y seguridad de beocas.com
“beocas.com • Cryptocurrency Exchange”
beocas.com — Contenido no disponible (HTTP 502). Suplantación de marca: Binance; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VT 3/93 (Bfore.Ai PreCrime, Gridinsoft, SOCRadar); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 65/100. Registrador: MAT BAO.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy first observed beocas.com on Jan 24, 2026. A positive finding was recorded by VirusTotal. Evidence score: 65/100.
VirusTotal recorded 3 detections among 93 engines: Bfore.Ai PreCrime, Gridinsoft, SOCRadar on Jun 27, 2026 at 00:13 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Jun 27, 2026 at 00:14 UTC. URLScan completed without a malicious verdict (score 0) on Mar 28, 2026 at 12:29 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:10 UTC; content was unavailable. Registration records list MAT BAO CORPORATION as the registrar. At collection time, the domain resolved to 104.21.86.54. Collected metadata identifies Binance as the apparent target. Captured page title: “beocas.com • Cryptocurrency Exchange”. PhishDestroy classified the observed content as Brand Impersonation. DOM analysis completed on Apr 23, 2026 at 07:21 UTC; stored DOM score 10/100. IoC extraction completed on Aug 2, 2026 at 04:15 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis27/06/2026
This domain, beocas.com, is identified as a brand impersonation phishing site specifically targeting users of the Binance cryptocurrency exchange platform. The site mimics the appearance and functionality of Binance, including the page title 'beocas.com • Cryptocurrency Exchange,' to deceive victims into entering sensitive credentials, such as login details, two-factor authentication codes, or wallet recovery phrases. Such impersonation attacks are commonly used to facilitate unauthorized access to cryptocurrency accounts, leading to financial theft or further exploitation of compromised accounts for additional fraudulent activities.
Analysis of the domain reveals multiple technical indicators of malicious intent. The domain is flagged by 3 out of 95 security vendors on VirusTotal, indicating detection by a subset of the cybersecurity community. It appears on one security blocklist and is currently blocked by at least one threat intelligence feed. Infrastructure analysis shows the domain was registered through MAT BAO CORPORATION on February 21, 2026, a date inconsistent with legitimate Binance domain registration timelines. The domain resolves to the IP address 104.21.86.54, which may be associated with other malicious activities or shared hosting environments commonly exploited for phishing campaigns. Additionally, the domain holds a Gridinsoft trust score of 0/100, further corroborating its classification as high-risk.
Users who have visited beocas.com or interacted with the site are advised to take immediate action to mitigate potential risks. First, cease all interaction with the domain and avoid entering any credentials or personal information. If credentials were entered, users should immediately change their Binance account password and enable or update two-factor authentication using a secure method, such as an authenticator app. Monitor the associated Binance account and linked financial accounts for any unauthorized transactions or suspicious activity. It is also recommended to scan the device used to access the site for malware or unauthorized access tools, as phishing sites may deploy additional payloads. Finally, report the domain to relevant cybersecurity organizations or the impersonated brand to aid in broader threat mitigation efforts.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
ICANN cobró. La rendición de cuentas no llegó.
Para este gTLD, el registrador indicado arriba opera bajo un contrato con ICANN. ICANN cobra tasas anuales, variables y basadas en transacciones vinculadas a registros, renovaciones y transferencias.
Acreditación: monetizada. Rendición de cuentas: vuelva a comprobarlo más tarde.
Entonces empieza la magia: ICANN redacta el RAA §3.18, el registrador investiga los abusos dentro de su propia base de clientes y las víctimas aportan las pruebas gratis, mientras cada nivel espera que actúe otro. Si eso hace que las víctimas se sientan más seguras, excelente: la factura funcionó.
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Acerca de este informe: beocas.com
Este informe presenta la última evidencia almacenada disponible para PhishDestroy. Las marcas de tiempo de origen se muestran cuando están disponibles; La disponibilidad y los veredictos de los proveedores pueden cambiar después de la recolección.
El sitio capturado mostraba el título de la página “beocas.com • Cryptocurrency Exchange” y puede estar haciéndose pasar por Binance.
A partir de 07/08/2026, beocas.com tuvo detecciones de los motores de seguridad 3.
Si cree que esta lista es inexacta, presentar una apelación. Para conocer nuestra metodología, visita el Página de preguntas frecuentes.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.