Security Scan Report: mensajes-bbva-informacion.es-tbc0s.ru

Redirected to: https://mensajes-bbva-informacion.es-tbc0s.ru/

Submitted: Mar 22, 2026, 10:36:30 PMCompleted: Mar 22, 2026, 10:37:56 PMpubliccompleted
Loading additional data...

Summary

This website contacted 1 IP in 1 country across 1 domain to perform 9 HTTP transactions. The main domain is mensajes-bbva-informacion.es-tbc0s.ru.

Submitted URL: http://mensajes-bbva-informacion.es-tbc0s.ru/

Effective URL: https://mensajes-bbva-informacion.es-tbc0s.ru/Redirected

AI Security Verdict

Confirmed Scam

Confidence: 95%

9
Risk Score

Phishing page impersonating Santander with credential‑harvesting form; avoid and report.

Risk Factors
Brand impersonation (Santander) on unranked, likely new domain
Password form without username field
Circular redirect loop
Multiple password fields (8) with no accompanying username/email field
Domain age unknown (treated as newly registered)
Domain age information unavailable

Details

Page Title

Santander Empresas

Scan Type

public

Language

🇪🇸

Spanish

(80% confidence)

Category

finance banking

(71%)

Domain Information

You're looking at domain 'mensajes-bbva-informacion.es-tbc0s.ru' on the Russian country-code top-level domain (.ru), featuring subdomain 'mensajes-bbva-informacion'. The second-level label 'es-tbc0s' is 8 characters long split between one vowel and 5 consonants; bonus characters include 1 digit and 1 hyphen. Breaking it apart gives five words: es, t, bc, 0, s. Expect 1 character per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of http://mensajes-bbva-informacion.es-tbc0s.ru/

Page Load Overview

9.97s
Total Load Time
4
HTTP Requests
1
Domains
0 KB
Total Size

Language Analysis

Primary Language

🇪🇸Spanish
Code: es
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:es
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:es
Text Length:379 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking71% confidence
Type: static
Method: ml+structural

All Detected Categories

finance banking
71%
corporate business
64%
technology software
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
446.17.248.164Kazan', Tatarstan Republic, Russia
AS214822Mt Finance LLC
41--

Detected Technologies1

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1DA66F17B9F586BCF3EA65617251330C92C06C5479AE081C8FE8ED86871AEBF05E3454E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

49152:IIGAZcb0bGAZcb0AGAZcb0fGAZcb0+GAZcb0cTe+i1vm7:+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:6887616:aoFoMUFCVAJGQkh4EGxNmUjMEgDWUgbwCyBETshEAgUaKEsjEhcNAJCj2BQBRiGWgAiBBAKASEWD0eKChICQjaUUECBKmgKR

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8ffffdfdfffff9c0
Perceptual Hash:e996798f314e164a
Difference Hash:6d3b4d8510c29393
Wavelet Hash:070560f1fffbc1c0
Color Hash:#86372d

Scan History

Scan history not available

Unable to load historical scan data