scotiawebscotlabank[.]mx13[.]com[.]mx
“Bienvenido”
scotiawebscotlabank.mx13.com.mx — 内容不可用 (HTTP 502). 品牌冒充:BBVA; 诈骗类型:Banking Phishing. 证据摘要: VirusTotal 16/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 100 det.; PhishDestroy score 95/100. 注册商: PDR.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This report details a malicious domain, scotiawebscotlabank.mx13.com.mx, which was identified as a banking phishing threat. The site presented a page titled "Bienvenido" and was specifically designed to impersonate the BBVA brand, posing a direct credential theft risk to BBVA customers by mimicking a legitimate banking login interface.
Technical analysis confirms the site's malicious nature. VirusTotal flagged it with 16 detections out of 95 vendors, including ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, and ESET. The domain was registered on 2025-10-25 through PDR Ltd. d/b/a PublicDomainRegistry.com and hosted on IP address 74.48.78.135, assigned to AS35916 MULTACOM CORPORATION in the United States. No SSL certificate was present. The nameservers were corey.ns.cloudflare.com and selah.ns.cloudflare.com.
The site is currently offline and non-responsive. Despite its inactive status, the domain presents a very high risk due to its clear impersonation of a major financial institution. The GridinSoft trust rating is 0 out of 100, and the domain is listed on two blocklists. Its recent creation date and high detection rate indicate it was an active threat that has been taken down.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。