Phishing detection: santandervyg.transcom-fs.com

Banco Santander
https://santandervyg.transcom-fs.com Access site
Screenshot
Screenshot of santandervyg.transcom-fs.com
Investigate
Domain santandervyg.transcom-fs.com10 CT hosts on apex
URL https://santandervyg.transcom-fs.com
Phishunt analysis Beta
15 noiseheuristic risk score · not a probability
Keyword matchPhishTankBrand in cert SAN
18 signals fired · detector v2.0.0
AI analysis AIBeta
Credential harvesting

Site impersonates Santander bank under a subdomain of transcom-fs.com, a domain unrelated to the legitimate bank. The TLS certificate SAN contains the Santander brand name and a password input form is present. Confirmed malicious by PhishTank, targeting banking credentials from Santander customers.

PhishTankBrand in cert SANPassword field
AI-generated from stored detector signals - the AI never visited the site. · 2026-07-23 · confidence 90%
Domain & Network
Whois
Network
Country SpainSpain
Hosting acens AS
ASN AS16371
TLS Cert R12
External detection PhishTank
CleanGoogle Safe Browsing · OpenPhish · TweetFeed · urlscan.io
Report this phishing

Tracked from 2026-04-15 13:05 UTC  ·  Last refreshed 2026-07-29 01:30 UTC