seesbl-com[.]mx13[.]com[.]mx
“Bienvenido”
Resumen de las pruebas
This domain, seesbl-com.mx13.com.mx, was identified as a brand impersonation threat targeting BBVA customers through a fraudulent login portal. The page title 'Bienvenido' suggests an attempt to mimic legitimate banking authentication pages, likely designed to harvest credentials from unsuspecting users. The domain was operational until recently, posing an elevated risk due to its direct targeting of financial institution customers, a demographic frequently exploited for unauthorized account access and fraudulent transactions. Analysis of the domain reveals multiple technical indicators of malicious activity. The domain was flagged by 18 out of 95 security vendors on VirusTotal, indicating a consensus among detection engines regarding its phishing nature. It appears on two security blocklists, further corroborating its malicious classification. Infrastructure details show the domain was registered on October 25, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with abusive domains. The domain resolved to the IP address 74.48.78.135, hosted under AS35916 (MULTACOM CORPORATION) in the United States, and lacked an SSL certificate, a red flag for secure communications. Users who visited seesbl-com.mx13.com.mx or entered credentials on the site should take immediate action to mitigate potential risks. First, reset passwords for BBVA accounts and any other platforms where the same credentials may have been reused. Enable multi-factor authentication (MFA) on all financial and sensitive accounts to add an additional layer of security. Monitor bank statements and transaction histories for unauthorized activity, reporting any suspicious transactions to the financial institution immediately. If personal or financial information was disclosed, consider placing a fraud alert or credit freeze with relevant credit bureaus to prevent identity theft. Additionally, scan local devices for malware using updated security tools to ensure no secondary infections were introduced.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.