bra9-pts-facil[.]dynv6[.]net
“Index of /”
bra9-pts-facil.dynv6.net — Konten tidak tersedia. Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 15/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 1 alert; PhishDestroy score 95/100. Registrar: Hetzner Online.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, bra9-pts-facil.dynv6.net, is flagged as an elevated-risk phishing endpoint specializing in credential harvesting. Analysis indicates the infrastructure was actively used to mimic legitimate login portals, tricking users into submitting sensitive authentication details such as usernames, passwords, and multi-factor authentication codes. The threat type aligns with targeted account takeover campaigns, commonly deployed against corporate, financial, or cloud service platforms. While currently offline, historical activity and residual indicators suggest prior malicious intent with potential for reactivation under similar or altered infrastructure. Infrastructure analysis reveals the domain resolved to the IP address 18.218.33.49, hosted on a server running Ubuntu with Apache HTTP Server. The page title, 'Index of /', suggests an exposed directory listing, a common misconfiguration exploited by threat actors to host phishing kits or exfiltrate stolen credentials. The domain is registered through Hetzner Online GmbH and appears on one security blocklist. VirusTotal detection reports 15 out of 95 security vendors flagging the domain as malicious, while Gridinsoft assigns a trust score of 0 out of 100. Additional intelligence confirms the domain was blocked by enterprise-grade security filters, further validating its association with phishing operations. Mitigation against this threat requires a multi-layered approach. Network administrators should implement DNS-based blocking for bra9-pts-facil.dynv6.net and its associated IP, 18.218.33.49, across firewalls and secure web gateways. Endpoint protection systems should be updated to include the domain and IP in threat intelligence feeds to prevent accidental access. Organizations should conduct internal audits to identify any prior exposure, including reviewing proxy logs for connections to the domain or IP. User awareness training should emphasize the risks of credential harvesting, particularly through unsolicited login prompts or unexpected authentication requests. Finally, monitoring for similar dynamic DNS patterns (e.g., *.dynv6.net) can help preemptively identify related phishing infrastructure.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | bra9-pts-facil.dynv6.net |
phishing | Phishing Block |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 2 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com Keyakinan 100%Apache is a free and open-source cross-platform web server software.
httpd.apache.org Keyakinan 100%Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive