Security Scan Report: bosagen.com

Site favicon
Submitted: Oct 1, 2026, 1:04:42 PMCompleted: Oct 1, 2026, 1:06:12 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 90%

8
Risk Score

Established courier site appears compromised: critical IDS malware/EtherHiding alerts, primary-domain malware IoC, and malicious third-party scripts indicate high risk.

Risk Factors (5)
Critical network IDS malware and exfiltration alerts
Malware threat-intelligence match on the primary domain
Malicious third-party scripts and resources loaded by the page
Blockchain RPC connections associated with EtherHiding exfiltration
Injected unrelated gambling/betting SEO spam indicating compromise
Domain age information unavailable

Details

Page Title

BosAgen | Agen Multi Kurir, PPOB, Pulsa

Scan Type

public

Domain Name Analysis

You're looking at domain 'bosagen.com' on the commercial generic top-level domain (.com). The registrable portion 'bosagen' spans 7 characters holding three vowels versus 4 consonants. Word splitting yields 2 words: bos, agen. Median word length is 3.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bosagen.com/

Page Load Overview

28.09s
Total Load Time
7.7 MB
Total Size

Language Analysis

Primary Language

馃嚠馃嚛Indonesian
Code: id
Confidence:37%
Script:Unknown
Direction:ltr

Detection Details

HTML Lang Attribute:en-US
Text Length:6,195 chars
Detector Agreement:60%
Language mismatch: Declared as en-US but detected as id

Website Classification

Primary Category

e-commerce shopping86% confidence
Type: spa
Method: ml+structural

All Detected Categories

e-commerce shopping
86%
technology software
70%
finance banking
57%
corporate business
55%
education learning
49%

Detected Features

Articles
OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
365.181.217.135Singapore, Singapore
AS47583Hostinger International Limited
2172.217.208.95Google 路 CDNUnited States
AS15169Google LLC
2142.251.14.97Google 路 CDNUnited States
AS15169Google LLC
2157.240.0.6Facebook 路 CDNFrankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
223.36.163.236Akamai 路 CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2142.251.152.119Google 路 CDNUnited States
AS15169Google LLC
2142.251.110.148Google 路 CDNUnited States
AS15169Google LLC
2216.239.32.36Google 路 CDNUnited States
AS15169Google LLC
2192.178.183.154Google 路 CDNUnited States
AS15169Google LLC
2188.114.96.9Cloudflare 路 WAFUnited States
AS13335Cloudflare, Inc.
10837--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17D6460633E03123D723F11CFA103764D21A09ECBD56A76DAEAB0616BF4B8C9237A1755

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:ZRDWFdtBJ29V3i6jtl18SdbJ7VU61lIqdLCJrKV18646lG6+RCv1:B8g

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:313481:I4gEChNQHIRxDRVQokhRIahDFcIhJqNAVUkMCjGYAELACYCApGAsYApuMgc10KAIgAE2oWQ7CEMASVQmhDBIpxpsoJCQIEBQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:8f9f9ff3f3fbff83
Perceptual Hash:ed1993c16d93133c
Difference Hash:5a3236363652112b
Wavelet Hash:009b839393f3ff81
Color Hash:#d2797e

Other Hashes

Crop Resistant:5a3236363652112b

Scan History

Scan history not available

Unable to load historical scan data