aktiffkan-paylater[.]ytt[.]my[.]id
“DANA - Apa pun transaksinya selalu ada DANA”
aktiffkan-paylater.ytt.my.id — No verificado. Suplantación de marca: Dana; Tipo de estafa: Impersonation. Resumen de las pruebas: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, Emsisoft); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
aktiffkan-paylater.ytt.my.id is a subdomain of ytt.my.id. PhishDestroy first observed the hostname on Aug 14, 2026. Stored content metadata identifies Dana as the apparent target. The captured page title is “DANA - Apa pun transaksinya selalu ada DANA”. Stored page analysis classifies the content as impersonation. Current evidence score: 95/100 (critical).
Positive findings are stored from 3 sources: VirusTotal, Cloudflare Radar, and URLScan. VirusTotal recorded 16 detections among 91 engines: alphaMountain.ai, BitDefender, Cluster25, CRDF, Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky, Lionic, Netcraft, OpenPhish, SOCRadar, Sophos, VIPRE on Aug 21, 2026 at 04:50 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained. URLScan returned a malicious verdict with score 100; scan metadata linked the capture to Dana and assigned phishing as its category on Aug 14, 2026 at 05:08 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 21, 2026 at 06:20 UTC. Google Safe Browsing returned no flag on Aug 21, 2026 at 04:52 UTC.
The collector marked the hostname reachable on Aug 14, 2026 at 00:29 UTC, but did not retain the HTTP response code. At collection time, the hostname resolved to 104.21.71.124 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Aug 14, 2026 at 02:22 UTC returned 88/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and Cloudflare Radar. TLS metadata lists Google Trust Services / WE1 as the certificate issuer with validity through Nov 9, 2026; checked Aug 14, 2026 at 01:02 UTC.
The content indicators and 3 positive source findings support the current Dana-themed impersonation classification.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 7 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100 % de confianzaJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100 % de confianzajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of aktiffkan-paylater.ytt.my.id · checked Aug 14, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.