balvionex-es[.]com
“Balvionex - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”
Résumé des preuves
The domain balvionex-es.com was registered on 21 February 2026 through the SRS AB registrar. It is hosted on Cloudflare’s network (ASN 13335) and resolves to the IPv6 address 2a06:98c1:3120::3, which is geolocated to the United States. No TLS certificate is presented, indicating the site was served over plain HTTP before being taken offline. The page title observed during the brief capture reads “Balvionex – Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”, and the threat is classified as a brand‑impersonation campaign targeting the “base” brand. The domain appears on a single security blocklist and is currently listed by PhishDestroy as blocked.
AlienVault’s Open Threat Exchange records the domain in one pulse, providing additional community corroboration. Reputation services assign extremely low trust scores—Scamadviser rates it 1 / 100 and Gridinsoft 0 / 100. VirusTotal analysis shows that one of ninety‑three scanning engines flagged the domain, further supporting its malicious nature. The infrastructure uses Cloudflare’s default nameservers dax.ns.cloudflare.com and magali.ns.cloudflare.com, typical of fast‑flux or disposable hosting.
At this time the exact phishing kit or login flow has not been disclosed, and the site’s HTTP response code is not captured due to its offline status. Because the site is offline, active payloads cannot be verified, but the combination of brand‑impersonation language, low reputation metrics, and detection by multiple security vendors indicates a high likelihood of fraudulent activity. Defenders should add balvionex-es.com to blocklists at perimeter and endpoint layers, monitor for any future re‑registration, and correlate any traffic to the associated IPv6 address with internal logs. Continuous observation of Cloudflare‑hosted domains that reference “Balvionex” or the “Trading IA 2025” phrase is recommended to pre‑empt repeat campaigns.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260107-37EC05- Titre de la page capturée
- Balvionex - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain balvionex-es.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing use of this domain for fraudulent purposes violates your TOS, which reserves the right to suspend or terminate services for any such violations.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) Chapter 9, Section 1: This section addresses fraud and outlines penalties for those who deceive others for unlawful gain.
Lag (2005:59) om elektronisk kommunikation: This law includes provisions against phishing and other deceptive electronic communications, imposing strict penalties for violations.
Regulatory Note: Failure to take immediate action against this domain may result in liability under applicable laws, including potential fines and sanctions. Non-compliance with your own AUP and TOS could also lead to reputational damage and regulatory scrutiny.
Data Coverage
Signaux de sécurité
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | balvionex-es.com |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif