Security Scan Report: mensajes-bbva-informacion.es-tbc0s.ru

Submitted: Mar 21, 2026, 11:29:34 AMCompleted: Mar 21, 2026, 11:30:46 AMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 9 HTTP transactions. The main domain is mensajes-bbva-informacion.es-tbc0s.ru.

Submitted URL: https://mensajes-bbva-informacion.es-tbc0s.ru/

AI Security Verdict

High Risk

Confidence: 92%

8
Risk Score

Phishing page impersonating Santander to steal passwords; do not enter credentials and report the site.

Risk Factors
Credential harvesting form (password fields without username)
Brand impersonation of a major bank on an unranked, suspicious domain
Unknown domain age (potentially brand‑new site)
Domain age information unavailable

Details

Page Title

Santander Empresas

Scan Type

public

Language

🇪🇸

Spanish

(80% confidence)

Category

finance banking

(71%)

Domain Information

Domain 'mensajes-bbva-informacion.es-tbc0s.ru' uses the Russian country-code top-level domain (.ru) and includes subdomain 'mensajes-bbva-informacion'. The second-level label 'es-tbc0s' is 8 characters long with 1 vowel and five consonants; it also includes one digit and one hyphen. Segmentation suggests five words: es, t, bc, 0, s. Median word length is 1 character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://mensajes-bbva-informacion.es-tbc0s.ru/

Page Load Overview

3.58s
Total Load Time
1
HTTP Requests
1
Domains
N/A
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:es
Text Length:379 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking71% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
71%
corporate business
64%
technology software
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
146.17.248.164Kazan', Tatarstan Republic, Russia
AS214822Mt Finance LLC
11--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DA66F17B9F586BCF3EA65617251330C92C06C5479AE081C8FE8ED86871AEBF05E3454E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

49152:IIGAZcb0bGAZcb0AGAZcb0fGAZcb0+GAZcb0cTe+i1vm7:+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6887616:aoFoMUFCVAJGQkh4EGxNmUjMEgDWUgbwCyBETshEAgUaKEsjEhcNAJCj2BQBRiGWgAiBBAKASEWD0eKChICQjaUUECBKmgKR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8ffffdfdfffff9c0
Perceptual Hash:e996798f314e164a
Difference Hash:6d3b4d8510c29393
Wavelet Hash:070560f1fffbc1c0
Color Hash:#2d863a

Scan History

Scan history not available

Unable to load historical scan data