bbva-italia[.]app
“BBVA”
Kanıt özeti
PhishDestroy identifies bbva-italia.app as a fraudulent website posing as a BBVA bank login portal, designed to steal your online banking credentials. This domain mimics the legitimate BBVA banking service to trick users into entering their login details, which are then harvested by cybercriminals for unauthorized access to bank accounts. The site uses social engineering tactics, such as a convincing replica of BBVA’s branding and login interface, to deceive visitors into believing it is a legitimate banking platform. If you encounter this domain, do not enter any personal or financial information, as it will be sent directly to attackers.
This domain was flagged by PhishDestroy’s automated systems and is currently under investigation. The domain bbva-italia.app was registered on April 20, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, and is hosted on IP address 185.114.97.3. Despite its recent creation, it has not yet been flagged by VirusTotal, with 12 out of 95 security engines detecting it as malicious. The domain also utilizes a Let’s Encrypt SSL certificate, which may further lend it an air of legitimacy. These technical indicators suggest an actively evolving phishing campaign that has not yet been widely recognized by security vendors.
If you have visited bbva-italia.app, immediately check your BBVA bank account for any unauthorized transactions and consider changing your password from a trusted device. Do not use the same password across multiple accounts, as cybercriminals may attempt to reuse stolen credentials. Report the domain to PhishDestroy or your local cybersecurity authority to help block its distribution. Install an updated antivirus or anti-phishing browser extension to prevent future exposure to similar threats. Stay vigilant and verify the legitimacy of banking websites by checking the official BBVA domain (bbva.it) before entering any sensitive information.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260423-6BC03B- Yakalanan sayfa başlığı
- BBVA
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bbva-italia.app |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Kaydedilmiş sonuç kanıtı
Sonuç ve kaldırma ilişkilendirmesi
- Sonuç
unknown- Erişilebilirlik
unreachable- Neden
origin_unreachable- Mekanizma
http_5xx- Güven
- 20%
- İlk gözlem
- Son gözlem
Tahmini erişilememe
Erişilemezliğe kadar geçen süre: 131.13 hKanıt SHA-256 6983c01580ed
Tespit zaman çizelgesi
-
Erişilebilirlik
İlk kayıtlı değer: Bilinmiyor
993d00c35140 -
Erişilebilirlik
Bilinmiyor → Canlı içerik
5e5b2f782b82 -
Erişilebilirlik
Canlı içerik → Bilinmiyor
fca8927c2f6c -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
ca9ed662b468 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
be8933608eaa -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
92f667ff6e00 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
6983c01580ed
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 23.04.2026
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
4 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of bbva-italia.app · checked Apr 23, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin