pruebabancoltarjeta1[.]vercel[.]app
“Sucursal Virtual Personas - Bancolombia”
pruebabancoltarjeta1.vercel.app — 隐形 · 可达. 品牌冒充:Bancolombia. 证据摘要: VirusTotal 11/91 (BitDefender, ESET, Fortinet, G-Data, Gridinsoft); URLScan malicious verdict; CF Radar malicious; cloaking observed; PhishDestroy score 83/100. 注册商: Vercel.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, pruebabancoltarjeta1.vercel.app, is identified as a high-risk phishing site specifically designed to impersonate Bancolombia’s online banking portal, Sucursal Virtual Personas. Analysis confirms the domain remains active and operational, posing a direct threat to users attempting to access legitimate banking services. The fraudulent page mimics the authentic Bancolombia interface to harvest login credentials, financial details, and personal identification information. Infrastructure analysis reveals the domain is hosted on Vercel Inc.’s platform and resolves to the IP address 64.29.17.195. Detection metrics indicate that 6 of 95 security vendors on VirusTotal have flagged this domain as malicious, reflecting moderate but concerning consensus among threat intelligence sources. The page title, Sucursal Virtual Personas - Bancolombia, directly matches the legitimate service, increasing the likelihood of successful deception. No historical registration data is currently available, limiting temporal attribution, but the domain’s active status and targeted impersonation elevate its risk profile. Current threat status remains active, with no evidence of takedown or mitigation. Organizations and users are advised to block access to this domain at the network level and implement real-time monitoring for related indicators of compromise. Financial institutions should alert customers to verify URLs before entering credentials and deploy multi-factor authentication to mitigate credential theft. Security teams should treat any interaction with this domain as a potential breach and investigate associated endpoints for unauthorized access attempts.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。