brndnsia[.]com
“𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱”
Resumo das evidências
This domain, brndnsia.com, is identified as a high-risk credential theft operation specifically targeting customers of Bank BRI, an Indonesian financial institution. The site presents itself as a legitimate Bank BRI 2025 promotional platform offering coupons or undian (lottery), a common social engineering tactic to lure victims into entering sensitive banking credentials, personal identification details, or one-time passwords (OTPs). Analysis indicates the domain is designed to harvest login credentials, which could lead to unauthorized account access, financial fraud, or identity theft. The use of Bank BRI branding, including its logo and promotional language, increases the likelihood of successful deception among Indonesian users familiar with the bank’s legitimate campaigns. Infrastructure analysis reveals multiple technical indicators supporting the malicious classification of brndnsia.com. The domain was registered on February 21, 2026, through CV. Rumahweb Indonesia, a registrar frequently associated with recently established phishing domains. It resolves to the IP address 103.30.147.20, hosted under AS46050 (PT JC Indonesia), an autonomous system previously linked to other fraudulent activities. The domain lacks an SSL certificate, a red flag for users accustomed to secure banking sites. Detection metrics further confirm its malicious nature: VirusTotal reports 18 out of 95 security vendors flagging the domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. Additionally, the domain appears on one security blocklist and is actively blocked by at least one anti-phishing service, reinforcing its high-risk status. Users who have visited brndnsia.com or interacted with its content should take immediate remedial actions to mitigate potential risks. First, any credentials entered on the site must be considered compromised and should be changed immediately across all platforms where the same or similar passwords were used. Affected individuals should contact Bank BRI through official channels to report the incident and monitor their accounts for unauthorized transactions. Enabling multi-factor authentication (MFA) on all financial and sensitive accounts is strongly recommended to prevent further unauthorized access. Users are also advised to scan their devices for malware, as phishing sites may deploy additional payloads or redirect to malicious downloads. Finally, reporting the domain to local cybersecurity authorities or consumer protection agencies can aid in broader mitigation efforts and prevent further victimization.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260131-47F04A- Título da página capturada
- 𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱
- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Acceptable Use Policy (AUP): The domain brndnsia.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain directly contravenes your TOS, which reserves the right to suspend or terminate services for any violations, including those related to fraudulent activities.
Applicable Laws (ID):
Undang-Undang Informasi dan Transaksi Elektronik (UU ITE) No. 11 Tahun 2008: This law addresses electronic transactions and prohibits any form of electronic fraud, including phishing.
Kitab Undang-Undang Hukum Pidana (KUHP) Pasal 378: This article defines fraud and outlines penalties for deceptive practices, which include phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to regulatory scrutiny and potential liability under Indonesian law. It is imperative to comply with both your internal policies and applicable legal standards to mitigate risks.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | brndnsia.com |
malicious | Sinkholed |
| Quad9 DNS | brndnsia.com |
malicious | Sinkholed |
| Cloudflare DNS | brndnsia.com |
malicious | Sinkholed |
| Hagezi Threat Feed | brndnsia.com |
malicious | Sinkholed |
| OpenDNS | brndnsia.com |
phishing | Phishing Block |
| DNS4EU | ibanking-bankjateng.whf.bz |
malicious | Sinkholed |
| OpenDNS | ibanking-bankjateng.whf.bz |
phishing | Phishing Block |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo