New Registrations
Intesa San Paolo phishing domains
Newly registered lookalikes - tracked daily
Intesa San Paolo phishing domains
Newly registered lookalikes - tracked daily
Tracked (7d)
6
New (24h)
3
vs avg
—
Recently registered domains — may be used for phishing. Screenshots show parking pages while domains warm up. Use for Threat Hunting or watchlists.
| Last check (UTC) | First seen (UTC) ▾ | URL | Screenshot | Flags | Details |
|---|---|---|---|---|---|
| 2026-06-10 02:35 | 2026-06-10 02:35 | ![]() |
Details | ||
| 2026-06-10 02:35 | 2026-06-10 02:35 | ![]() |
Details | ||
| 2026-06-09 01:50 | 2026-06-09 01:50 | ![]() |
Details | ||
| 2026-06-07 02:11 | 2026-06-07 02:11 | ![]() |
Details | ||
| 2026-06-05 02:16 | 2026-06-05 02:16 | ![]() |
Details | ||
| 2026-06-03 01:39 | 2026-06-03 01:39 | ![]() |
Details |
Recently registered domains — may be used for phishing. Screenshots show parking pages while domains warm up. Use for Threat Hunting or watchlists.
| URL | Screenshot | Details |
|---|---|---|
| https://intesasanpaolo-1a.com
|
![]() |
Details |
| https://intesamps.com
|
![]() |
Details |
| https://riz-intesasanpaolo.com
|
![]() |
Details |
| https://intesasolar.com
|
![]() |
Details |
| https://intesasanpaolowm-over…
|
![]() |
Details |
| https://intesasanpaoio.com
|
![]() |
Details |
AIHow to verify a real Intesa San Paolo URL
- Legitimate Intesa San Paolo URLs always end in
intesasanpaolo.com(e.g.www.intesasanpaolo.com,account.intesasanpaolo.com). Anything else — including look-alike typosquats, hyphenated variations, or unfamiliar TLDs like.xyz/.top/.vip— is not Intesa San Paolo. - The domains listed above were registered within the last 7 days. New-domain age is itself a signal — Intesa San Paolo has owned
intesasanpaolo.comfor years; brand-new look-alikes are almost never legitimate. - If you got the link from email, SMS, or social media, do not click it. Open
intesasanpaolo.comfrom your browser bookmark or type the domain manually. - Real Intesa San Paolo pages almost never ask for credentials immediately after clicking from a message — treat any such redirect as a phishing attempt until the domain is verified.

