balvionex-es[.]com
“Balvionex - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”
Сводка доказательств
The domain balvionex-es.com was registered on 21 February 2026 through the SRS AB registrar. It is hosted on Cloudflare’s network (ASN 13335) and resolves to the IPv6 address 2a06:98c1:3120::3, which is geolocated to the United States. No TLS certificate is presented, indicating the site was served over plain HTTP before being taken offline. The page title observed during the brief capture reads “Balvionex – Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”, and the threat is classified as a brand‑impersonation campaign targeting the “base” brand. The domain appears on a single security blocklist and is currently listed by PhishDestroy as blocked.
AlienVault’s Open Threat Exchange records the domain in one pulse, providing additional community corroboration. Reputation services assign extremely low trust scores—Scamadviser rates it 1 / 100 and Gridinsoft 0 / 100. VirusTotal analysis shows that one of ninety‑three scanning engines flagged the domain, further supporting its malicious nature. The infrastructure uses Cloudflare’s default nameservers dax.ns.cloudflare.com and magali.ns.cloudflare.com, typical of fast‑flux or disposable hosting.
At this time the exact phishing kit or login flow has not been disclosed, and the site’s HTTP response code is not captured due to its offline status. Because the site is offline, active payloads cannot be verified, but the combination of brand‑impersonation language, low reputation metrics, and detection by multiple security vendors indicates a high likelihood of fraudulent activity. Defenders should add balvionex-es.com to blocklists at perimeter and endpoint layers, monitor for any future re‑registration, and correlate any traffic to the associated IPv6 address with internal logs. Continuous observation of Cloudflare‑hosted domains that reference “Balvionex” or the “Trading IA 2025” phrase is recommended to pre‑empt repeat campaigns.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-37EC05- Заголовок сохранённой страницы
- Balvionex - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain balvionex-es.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing use of this domain for fraudulent purposes violates your TOS, which reserves the right to suspend or terminate services for any such violations.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) Chapter 9, Section 1: This section addresses fraud and outlines penalties for those who deceive others for unlawful gain.
Lag (2005:59) om elektronisk kommunikation: This law includes provisions against phishing and other deceptive electronic communications, imposing strict penalties for violations.
Regulatory Note: Failure to take immediate action against this domain may result in liability under applicable laws, including potential fines and sanctions. Non-compliance with your own AUP and TOS could also lead to reputational damage and regulatory scrutiny.
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | balvionex-es.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 07.01.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание