Notification and current-status evidence
The sent-report ledger records the first outgoing report at . It contains 2 outgoing records; the latest is dated . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
shortpro[.]co[.]id
“Beranda - ShortPro”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
The domain shortpro.co.id is currently active and resolves to the IP address 188.114.96.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. Registration records show the domain was created on March 12, 2026 through the registrar PT JC Indonesia. The site presents a valid HTTPS certificate issued by Google Trust Services under the WE1 label, and the web server returns HTTP status code 200, confirming that the site is reachable. Technical fingerprinting indicates a WordPress stack backed by MySQL and PHP, with front‑end components such as particles.js, Bootstrap, Yoast SEO, Trustpilot, and Swiper, all of which are commonly used to add perceived credibility to malicious pages. The page title returned by the server is "Beranda - ShortPro," suggesting the site may be attempting to masquerade as a legitimate ShortPro service, although no further brand evidence is supplied.
Security telemetry shows the domain appears on one external blocklist and has been listed by PhishDestroy, indicating that at least one security community has identified it as a phishing threat. VirusTotal analysis reports a single vendor flag out of 94 scans, providing a low‑confidence indicator of malicious behavior. The Gridinsoft trust score of 35 out of 100 further reflects a poor reputation. Nameserver configuration uses Cloudflare's alan.ns.cloudflare.com and daisy.ns.cloudflare.com, which is consistent with the observed hosting provider.
Uncertainty remains regarding the exact payload or credential‑collection mechanisms employed, as no content analysis or sandbox execution results are available. Defenders should therefore treat shortpro.co.id as a high‑risk indicator. Recommended mitigation steps include adding the domain to DNS blocklists, configuring proxy or web‑gateway filters to block HTTP/HTTPS requests to the host, monitoring outbound traffic for connections to 188.114.96.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-1774199605-shortpro.co.id- ملف PDF
- دليل PDF
سجل البلاغات 2
- البلاغ 1 Phishing Abuse Report: shortpro[.]co[.]id
- البلاغ 2 ⚠️ ESCALATION #2 (212h active): Phishing - shortpro[.]co[.]id
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/7d/common.js |
audit | Hunting_JS_WebAssembly |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of shortpro.co.id · checked Mar 12, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب