banreservaseguridad[.]com
“Bienvenidos a TuB@nco Empresas”
banreservaseguridad.com — Неперевірений. Уособлення бренду: Banreservas; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 22/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, Chong Lua Dao, Cluster25); URLQuery 4 alerts; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Hosting Concepts.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies banreservaseguridad.com as a newly registered domain operating as a generic phishing page, likely designed to harvest banking credentials under the guise of a security reservation portal. The domain mimics a Spanish-language banking service, suggesting a targeted campaign against Spanish-speaking users seeking to access financial platforms. No specific drainer kit signatures have been extracted yet, but behavioral analysis indicates a high likelihood of credential theft or crypto wallet draining functionality once victims enter their login details. The threat remains under active investigation as analysts trace its infrastructure and potential affiliations with other malicious campaigns.
Technical indicators for this domain paint a concerning picture despite its low current detection rate. The domain was registered on April 24, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, and resolves to IP address 172.67.217.15. Its SSL certificate, issued by Let's Encrypt, provides a false sense of legitimacy, while VirusTotal currently shows 0 detections out of 95 engines. Google Safe Browsing has not yet flagged this domain, and public blocklists have not registered any hits at this time. The domain's recent creation date and pristine reputation across most security platforms make it particularly dangerous, as it has not yet triggered widespread automated defenses.
The current status of banreservaseguridad.com remains active with an under-investigation risk rating, meaning its full capabilities and scope have not been fully determined. Response actions include domain takedown requests to the registrar, IP de-listing efforts with hosting providers, and proactive notification to affected brands that may be impersonated. Users are strongly advised to verify any links to banking or financial services using PhishDestroy's verification tools before entering credentials or cryptocurrency wallet information. While the immediate risk is classified as under investigation, the combination of recent registration, low detection rates, and SSL encryption creates a high potential for successful exploitation if left unchecked. Immediate defensive measures should prioritize user awareness campaigns and proactive blocking of this domain across enterprise security controls.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | banreservaseguridad.com |
malicious | Sinkholed |
| Hagezi Threat Feed | banreservaseguridad.com |
malicious | Sinkholed |
| DigiCert UltraDNS | banreservaseguridad.com |
malicious | Sinkholed |
| DNS4EU | banreservaseguridad.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of banreservaseguridad.com · checked Apr 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога