Notification and current-status evidence
The sent-report ledger records the first outgoing report at . It contains 2 outgoing records; the latest is dated . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
shortpro[.]co[.]id
“Beranda - ShortPro”
证据摘要
The domain shortpro.co.id is currently active and resolves to the IP address 188.114.96.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. Registration records show the domain was created on March 12, 2026 through the registrar PT JC Indonesia. The site presents a valid HTTPS certificate issued by Google Trust Services under the WE1 label, and the web server returns HTTP status code 200, confirming that the site is reachable. Technical fingerprinting indicates a WordPress stack backed by MySQL and PHP, with front‑end components such as particles.js, Bootstrap, Yoast SEO, Trustpilot, and Swiper, all of which are commonly used to add perceived credibility to malicious pages. The page title returned by the server is "Beranda - ShortPro," suggesting the site may be attempting to masquerade as a legitimate ShortPro service, although no further brand evidence is supplied.
Security telemetry shows the domain appears on one external blocklist and has been listed by PhishDestroy, indicating that at least one security community has identified it as a phishing threat. VirusTotal analysis reports a single vendor flag out of 94 scans, providing a low‑confidence indicator of malicious behavior. The Gridinsoft trust score of 35 out of 100 further reflects a poor reputation. Nameserver configuration uses Cloudflare's alan.ns.cloudflare.com and daisy.ns.cloudflare.com, which is consistent with the observed hosting provider.
Uncertainty remains regarding the exact payload or credential‑collection mechanisms employed, as no content analysis or sandbox execution results are available. Defenders should therefore treat shortpro.co.id as a high‑risk indicator. Recommended mitigation steps include adding the domain to DNS blocklists, configuring proxy or web‑gateway filters to block HTTP/HTTPS requests to the host, monitoring outbound traffic for connections to 188.114.96.
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-1774199605-shortpro.co.id- PDF 文件
- PDF 证据
报告历史 2
- 报告 1 Phishing Abuse Report: shortpro[.]co[.]id
- 报告 2 ⚠️ ESCALATION #2 (212h active): Phishing - shortpro[.]co[.]id
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/7d/common.js |
audit | Hunting_JS_WebAssembly |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of shortpro.co.id · checked Mar 12, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控