brndnsia[.]com
“𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱”
Сводка доказательств
This domain, brndnsia.com, is identified as a high-risk credential theft operation specifically targeting customers of Bank BRI, an Indonesian financial institution. The site presents itself as a legitimate Bank BRI 2025 promotional platform offering coupons or undian (lottery), a common social engineering tactic to lure victims into entering sensitive banking credentials, personal identification details, or one-time passwords (OTPs). Analysis indicates the domain is designed to harvest login credentials, which could lead to unauthorized account access, financial fraud, or identity theft. The use of Bank BRI branding, including its logo and promotional language, increases the likelihood of successful deception among Indonesian users familiar with the bank’s legitimate campaigns. Infrastructure analysis reveals multiple technical indicators supporting the malicious classification of brndnsia.com. The domain was registered on February 21, 2026, through CV. Rumahweb Indonesia, a registrar frequently associated with recently established phishing domains. It resolves to the IP address 103.30.147.20, hosted under AS46050 (PT JC Indonesia), an autonomous system previously linked to other fraudulent activities. The domain lacks an SSL certificate, a red flag for users accustomed to secure banking sites. Detection metrics further confirm its malicious nature: VirusTotal reports 18 out of 95 security vendors flagging the domain as malicious, while Google Safe Browsing explicitly classifies it as phishing. Additionally, the domain appears on one security blocklist and is actively blocked by at least one anti-phishing service, reinforcing its high-risk status. Users who have visited brndnsia.com or interacted with its content should take immediate remedial actions to mitigate potential risks. First, any credentials entered on the site must be considered compromised and should be changed immediately across all platforms where the same or similar passwords were used. Affected individuals should contact Bank BRI through official channels to report the incident and monitor their accounts for unauthorized transactions. Enabling multi-factor authentication (MFA) on all financial and sensitive accounts is strongly recommended to prevent further unauthorized access. Users are also advised to scan their devices for malware, as phishing sites may deploy additional payloads or redirect to malicious downloads. Finally, reporting the domain to local cybersecurity authorities or consumer protection agencies can aid in broader mitigation efforts and prevent further victimization.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260131-47F04A- Заголовок сохранённой страницы
- 𝙆𝙪𝙥𝙤𝙣 𝙐𝙣𝙙𝙞𝙖𝙣 | 𝘽𝙖𝙣𝙠 𝘽𝙍𝙄 𝟮𝟬𝟮𝟱
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain brndnsia.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain directly contravenes your TOS, which reserves the right to suspend or terminate services for any violations, including those related to fraudulent activities.
Applicable Laws (ID):
Undang-Undang Informasi dan Transaksi Elektronik (UU ITE) No. 11 Tahun 2008: This law addresses electronic transactions and prohibits any form of electronic fraud, including phishing.
Kitab Undang-Undang Hukum Pidana (KUHP) Pasal 378: This article defines fraud and outlines penalties for deceptive practices, which include phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to regulatory scrutiny and potential liability under Indonesian law. It is imperative to comply with both your internal policies and applicable legal standards to mitigate risks.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | brndnsia.com |
malicious | Sinkholed |
| Quad9 DNS | brndnsia.com |
malicious | Sinkholed |
| Cloudflare DNS | brndnsia.com |
malicious | Sinkholed |
| Hagezi Threat Feed | brndnsia.com |
malicious | Sinkholed |
| OpenDNS | brndnsia.com |
phishing | Phishing Block |
| DNS4EU | ibanking-bankjateng.whf.bz |
malicious | Sinkholed |
| OpenDNS | ibanking-bankjateng.whf.bz |
phishing | Phishing Block |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание