seesbl-com[.]mx13[.]com[.]mx
“Bienvenido”
Riepilogo delle prove
This domain, seesbl-com.mx13.com.mx, was identified as a brand impersonation threat targeting BBVA customers through a fraudulent login portal. The page title 'Bienvenido' suggests an attempt to mimic legitimate banking authentication pages, likely designed to harvest credentials from unsuspecting users. The domain was operational until recently, posing an elevated risk due to its direct targeting of financial institution customers, a demographic frequently exploited for unauthorized account access and fraudulent transactions. Analysis of the domain reveals multiple technical indicators of malicious activity. The domain was flagged by 18 out of 95 security vendors on VirusTotal, indicating a consensus among detection engines regarding its phishing nature. It appears on two security blocklists, further corroborating its malicious classification. Infrastructure details show the domain was registered on October 25, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with abusive domains. The domain resolved to the IP address 74.48.78.135, hosted under AS35916 (MULTACOM CORPORATION) in the United States, and lacked an SSL certificate, a red flag for secure communications. Users who visited seesbl-com.mx13.com.mx or entered credentials on the site should take immediate action to mitigate potential risks. First, reset passwords for BBVA accounts and any other platforms where the same credentials may have been reused. Enable multi-factor authentication (MFA) on all financial and sensitive accounts to add an additional layer of security. Monitor bank statements and transaction histories for unauthorized activity, reporting any suspicious transactions to the financial institution immediately. If personal or financial information was disclosed, consider placing a fraud alert or credit freeze with relevant credit bureaus to prevent identity theft. Additionally, scan local devices for malware using updated security tools to ensure no secondary infections were introduced.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo