niceformx-payylterindo[.]layanannetz[.]com
“𝗗𝗔𝗡𝗔 | 𝗖𝘂𝘀𝘁𝗼𝗺𝗲𝗿 𝗖𝗮𝗿𝗲 𝗗𝗔𝗡𝗔”
niceformx-payylterindo.layanannetz.com — المحتوى غير متوفر. انتحال العلامة التجارية: DANA; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 16/93 (ADMINUSLabs, Criminal IP, BitDefender, Cluster25, CRDF); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. مسجّل النطاق: CV. Rumahweb Indonesia.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This report details the analysis of the domain niceformx-payylterindo.layanannetz.com. The site, which is now offline, impersonated the Indonesian digital wallet brand DANA. The page title claimed to be for "DANA Customer Care," indicating a phishing threat designed to steal user credentials or financial information from DANA customers through a fraudulent customer service portal.
Technical analysis confirms the site is malicious. VirusTotal flagged the domain with 16 detections out of 95 security vendors, with specific flags from ADMINUSLabs, Criminal IP, BitDefender, Cluster25, and CRDF. The domain was registered through CV. Rumahweb Indonesia and created on January 4, 2026. The site was hosted on IP address 104.21.13.129, associated with AS13335 Cloudflare, Inc. in the United States. No SSL certificate was present, and the domain used Cloudflare nameservers. The GridinSoft trust rating was 0 out of 100.
As of the analysis date, the site is down and offline. The risk level is high due to the confirmed brand impersonation and multiple security vendor detections. The domain's creation date in the future suggests possible data manipulation or a reporting error, but the threat remains credible.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: layanannetz.com
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain layanannetz.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260131-A94EDD Recipient: abuse@rumahweb.co.id هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب