helpp-bantuan-dana.layanan-offcial.biz[.]id
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of helpp-bantuan-dana.layanan-offcial.biz[.]id
This website appears to present itself as a login or account-access page related to DANA, an Indonesian digital wallet and payments brand. The page title, branding elements, and screenshot indicate a form asking visitors to enter a mobile phone number to continue, which is consistent with a sign-in or account-verification flow for a financial service.
However, the domain name does not appear to match an official brand domain and includes unusual wording and spelling patterns such as "helpp," "bantuan," and "offcial." Based on the domain structure and the page content, the site may be attempting to imitate a financial or e-wallet service rather than operating as an independently branded website. No clear evidence in the provided data identifies a legitimate operator for this domain.
Safety Assessment for helpp-bantuan-dana.layanan-offcial.biz[.]id
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 14 out of 92 security engines, and several web-classification providers categorized it as phishing or fraud-related. The page also appears to mimic the branding of DANA while using a separate, suspicious-looking domain, which may be consistent with credential-harvesting or account takeover attempts.
Additional context increases concern: the domain is only 6 days old, has no established traffic ranking, and presents a simple phone-number collection form associated with a financial brand. Although the malware scan did not detect malicious files and the checked blacklist databases were largely clean at the time of this scan, that does not outweigh the multi-engine phishing consensus and the apparent brand imitation.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate expiring on 2026-08-05 and is routed through Cloudflare infrastructure, with Cloudflare nameservers and hosting-associated IP data. HTTPS availability may help encrypt traffic in transit, but it does not by itself indicate legitimacy. DNSSEC appears to be unsigned, and the domain is very newly registered through PT JC Indonesia.
From the scan data provided, no malicious files, flagged external links, or iframes were detected at the time of analysis. Even so, the combination of a newly created domain, Cloudflare-fronted hosting, financial-brand-themed content, and strong phishing classifications from multiple security engines may be considered technically consistent with short-lived phishing deployment patterns.
Share your experience with this website. Was it safe? Did you encounter any issues?