New Registrations
Itaú phishing domains
Newly registered lookalikes - tracked daily
Itaú phishing domains
Newly registered lookalikes - tracked daily
Tracked (7d)
7
New (24h)
2
vs avg
—
Recently registered domains — may be used for phishing. Screenshots show parking pages while domains warm up. Use for Threat Hunting or watchlists.
| Last check (UTC) | First seen (UTC) ▾ | URL | Screenshot | Flags | Details |
|---|---|---|---|---|---|
| 2026-06-10 02:36 | 2026-06-10 02:36 | ![]() |
Details | ||
| 2026-06-10 02:36 | 2026-06-10 02:36 | ![]() |
Details | ||
| 2026-06-05 02:19 | 2026-06-05 02:19 | ![]() |
Details | ||
| 2026-06-05 02:19 | 2026-06-05 02:19 | ![]() |
Details | ||
| 2026-06-05 02:18 | 2026-06-05 02:18 | ![]() |
Details | ||
| 2026-06-05 02:18 | 2026-06-05 02:18 | ![]() |
Details | ||
| 2026-06-05 02:18 | 2026-06-05 02:18 | ![]() |
Details |
Recently registered domains — may be used for phishing. Screenshots show parking pages while domains warm up. Use for Threat Hunting or watchlists.
| URL | Screenshot | Details |
|---|---|---|
| https://itauunabq.info
|
![]() |
Details |
| https://itaunacagg.club
|
![]() |
Details |
| https://itauna.sbs
|
![]() |
Details |
| https://itau7ak3aqds6m1904vld…
|
![]() |
Details |
| https://itau2viadafatura.com
|
![]() |
Details |
| https://itau-official.site
|
![]() |
Details |
| https://itau-fatura-com-br.biz
|
![]() |
Details |
AIHow to verify a real Itaú URL
- Legitimate Itaú URLs always end in
itau.com.br(e.g.www.itau.com.br,account.itau.com.br). Anything else — including look-alike typosquats, hyphenated variations, or unfamiliar TLDs like.xyz/.top/.vip— is not Itaú. - The domains listed above were registered within the last 7 days. New-domain age is itself a signal — Itaú has owned
itau.com.brfor years; brand-new look-alikes are almost never legitimate. - If you got the link from email, SMS, or social media, do not click it. Open
itau.com.brfrom your browser bookmark or type the domain manually. - Real Itaú pages almost never ask for credentials immediately after clicking from a message — treat any such redirect as a phishing attempt until the domain is verified.






