brndnsia[.]com
“𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱”
Résumé des preuves
This domain, brndnsia.com, is identified as a high-risk credential theft operation specifically targeting customers of Bank BRI, an Indonesian financial institution. The site presents itself as a legitimate Bank BRI 2025 promotional platform offering coupons or undian (lottery), a common social engineering tactic to lure victims into entering sensitive banking credentials, personal identification details, or one-time passwords (OTPs). Analysis indicates the domain is designed to harvest login credentials, which could lead to unauthorized account access, financial fraud, or identity theft. The use of Bank BRI branding, including its logo and promotional language, increases the likelihood of successful deception among Indonesian users familiar with the bank’s legitimate campaigns. Infrastructure analysis reveals multiple technical indicators supporting the malicious classification of brndnsia.com. The domain was registered on February 21, 2026, through CV. Rumahweb Indonesia, a registrar frequently associated with recently established phishing domains. It resolves to the IP address 103.30.147.20, hosted under AS46050 (PT JC Indonesia), an autonomous system previously linked to other fraudulent activities. The domain lacks an SSL certificate, a red flag for users accustomed to secure banking sites. Detection metrics further confirm its malicious nature: VirusTotal reports 18 out of 95 security vendors flagging the domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. Additionally, the domain appears on one security blocklist and is actively blocked by at least one anti-phishing service, reinforcing its high-risk status. Users who have visited brndnsia.com or interacted with its content should take immediate remedial actions to mitigate potential risks. First, any credentials entered on the site must be considered compromised and should be changed immediately across all platforms where the same or similar passwords were used. Affected individuals should contact Bank BRI through official channels to report the incident and monitor their accounts for unauthorized transactions. Enabling multi-factor authentication (MFA) on all financial and sensitive accounts is strongly recommended to prevent further unauthorized access. Users are also advised to scan their devices for malware, as phishing sites may deploy additional payloads or redirect to malicious downloads. Finally, reporting the domain to local cybersecurity authorities or consumer protection agencies can aid in broader mitigation efforts and prevent further victimization.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260131-47F04A- Titre de la page capturée
- 𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain brndnsia.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain directly contravenes your TOS, which reserves the right to suspend or terminate services for any violations, including those related to fraudulent activities.
Applicable Laws (ID):
Undang-Undang Informasi dan Transaksi Elektronik (UU ITE) No. 11 Tahun 2008: This law addresses electronic transactions and prohibits any form of electronic fraud, including phishing.
Kitab Undang-Undang Hukum Pidana (KUHP) Pasal 378: This article defines fraud and outlines penalties for deceptive practices, which include phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to regulatory scrutiny and potential liability under Indonesian law. It is imperative to comply with both your internal policies and applicable legal standards to mitigate risks.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | brndnsia.com |
malicious | Sinkholed |
| Quad9 DNS | brndnsia.com |
malicious | Sinkholed |
| Cloudflare DNS | brndnsia.com |
malicious | Sinkholed |
| Hagezi Threat Feed | brndnsia.com |
malicious | Sinkholed |
| OpenDNS | brndnsia.com |
phishing | Phishing Block |
| DNS4EU | ibanking-bankjateng.whf.bz |
malicious | Sinkholed |
| OpenDNS | ibanking-bankjateng.whf.bz |
phishing | Phishing Block |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif