Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 5. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Keamanan domain dan intelijen ancaman

degen[.]ir

“HiGate”

Putusan ancaman Kritis 80/100 skor bukti
Ketersediaan Terakhir diketahui aktif Pengamatan keterjangkauan tersimpan terbaru
Deteksi Total Virus: 5/91 URLQuery threat systems: 1 alert Terakhir diketahui aktif
26/02/2026

Ringkasan bukti

KRITIS
Evidence score
80/100

Analysis of degen.ir shows a newly registered domain (created February 21, 2026) hosted on an Apache HTTP Server and resolving to IP 195.28.11.70, which is attributed to AS47376 Web Gostaran Bandar Company (PJS) in Iran. The site serves over HTTPS with an R13 certificate and returns HTTP status 200. The page title reported by crawlers is "HiGate," offering no further contextual clues about the content or target audience.

The domain is currently listed on a single security blocklist and holds a Gridinsoft trust score of 0 out of 100, indicating a high confidence of malicious intent. VirusTotal scans have flagged degen.ir with four detections out of ninety‑five vendors, and the domain is actively blocked by PhishDestroy, reinforcing its classification as a generic phishing threat. The risk assessment assigned by the reporting system is high, and the status remains active, suggesting ongoing exploitation.

Defenders should prioritize immediate containment actions. Network controls ought to block outbound connections to 195.28.11.70 and prevent DNS resolution of degen.ir. Email security gateways must be updated to flag any messages containing links to this domain, and intrusion detection signatures should be tuned to detect HTTP requests to the host. Continuous monitoring of related ASN traffic and periodic re‑scans of the domain are recommended to capture any changes in its threat posture, while incident response teams should be prepared to investigate any compromise reports that reference the HiGate page title or associated IP infrastructure.

VirusTotal
VirusTotal
5 det.
URLQuery
URLQuery
1 threat alert
Sertifikat TLS
Kedaluwarsa atau belum diverifikasi
Usia
6 mo
Status terpantau
Terakhir diketahui aktif HTTP 200
PhishDestroy
Daftar Hapus
Terdaftar

Data Coverage

VirusTotal 5 / 91 URLQuery 1 threat-system alert PhishStats tidak diperiksa OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS tidak diperiksa TLS Kedaluwarsa atau belum diverifikasi WHOIS 6 mo old Tangkapan layar 3 captures · 3 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
Quad9 DNS degen.ir malicious Sinkholed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
10/12

Cakupan daftar blokir

10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026

10 sumber eksternal dipantau Tidak cocok

Linimasa deteksi

  1. Cloudflare Radar

    Pemindaian Cloudflare Radar tersimpan · Buka pemindaian

Tangkapan tersimpan

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN Apache · AS47376 WGB-LLC Web Gostaran Bandar Company (PJS), IR
Reputasi IP IP abuse confidence 0/100 0 reports checked 15/07/2026
Alamat IP 195.28.11.70 IR
LokasiIR Bushehr, IR
JaringanAS47376 · Web Gostaran Bandar Company (PJS)
PendaftaranDibuat 21/02/2026 (171d)
Status HTTP200
Detail teknisDNS, nama TLS, dan stempel waktu
Pertama Kali Terdeteksi26/02/2026
DOM Analysisanalyzed 09/07/2026DOM analysis score 78/100
Favicon Hash
Judul Halaman
HiGate
Sertifikat TLS
Kedaluwarsa atau belum diverifikasi · Diterbitkan oleh R13
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

5 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed Previous stored snapshot: 4 detections
ChainPatrol
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Gridinsoft
Analisis Konfigurasi Situs
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini

Alat eksternal

HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/degen.ir"
  title="PhishDestroy threat report for degen.ir"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>