wwwdd[.]vercel[.]app
“𝐊𝐮𝐩𝐨𝐧 𝐔𝐧𝐝𝐢𝐚𝐧 | 𝐁𝐚𝐧𝐤 𝐁𝐑𝐈 2025”
Riepilogo delle prove
This domain is flagged as a high-risk phishing threat specifically designed to mimic Bank BRI's 2025 coupon distribution portal. Analysis indicates the site employs social engineering tactics to harvest banking credentials, presenting itself as a legitimate financial rewards program under the title '𝐊𝐮𝐩𝐨𝐧 𝐔𝐧𝐝𝐢𝐚𝐧 | 𝐁𝐚𝐧𝐤 𝐁𝐑𝐈 2025.' The threat type is categorized as generic_phishing with active status, posing immediate risks to users who interact with its fraudulent interface. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 216.198.79.67, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. It is registered through Vercel Inc. and secured with an SSL certificate issued by Google Trust Services (WR1). Detection metrics show 22 out of 95 security vendors on VirusTotal flagging the domain as malicious. The domain appears on two security blocklists and is actively blocked by PhishDestroy and PhishingDB. Google Safe Browsing also categorizes it as phishing content. No legitimate creation date or historical reputation data is available, reinforcing its suspicious nature. Mitigation requires immediate blocking of the domain and associated IP address across network security controls. Users should be alerted to verify all Bank BRI communications through official channels only, avoiding any links or forms presented via unsolicited messages. Financial institutions should monitor for credential reuse patterns tied to this campaign, particularly from users who may have interacted with the fraudulent coupon page. Security teams are advised to inspect endpoint logs for connections to 216.198.79.67 and correlate with any subsequent unauthorized access attempts. Proactive measures include deploying phishing-specific detection rules targeting the page title pattern and SSL certificate issuer observed in this incident.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
22 → 21
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo