Verdict
bitsoftwares.ir shows high-risk / scam indicators.
This assessment found strong scam indicators. Do not pay, sign in, or share personal details with this site.
| What this site appears to be | A minimal page that displays a single timestamp string (Friday, 21st August, 2026 1:10:44 AM). No links, forms, or monetization elements detected. |
|---|
Evidence status and limitations
Evidence completeness: UNKNOWN
- The real-world operator identity was not independently verified.
- Module-level completeness metadata is unavailable for this legacy report.
At a glance
The checks that decide most of this verdict.
| Malware engines | 14 flagged itVirusTotal | Risk |
|---|---|---|
| Google Safe Browsing | Not listedGoogle | Clear |
| Abuse reports on the host | 0 reportsAbuseIPDB; shared hosting inflates this count | Noted |
| Domain age | 4.4 years oldRegistered history | Clear |
| Web archive | Archived since 2022Public history exists | Clear |
| Certificate | Encrypted connectionIssued by YR2 | Noted |
The page as captured
Key findings
- Automated classification: Sensitive Interaction Risk.
- Domain age: 3 to 10 years (registration continuity).
- Public web-archive history exists since 2022.
- At least one reputation service TrustSniffer consulted had flagged this domain at assessment time.
Full analysis
Security Alert
Kaspersky, Sophos flagged this site in external intelligence checks, indicating elevated compromise/scam exposure that requires immediate caution.
This website is a minimal timestamp-only web page that displays “Friday, 21st August, 2026 1:10:44 AM” without presenting a discernible company, service, product, transaction flow, or stated business purpose.
Scam/Impersonation Risk
No identity contradiction or page-level brand impersonation was detected, and the homepage itself contains no login form, payment function, or overtly malicious interaction. However, the domain is recorded as blacklisted, with multiple malicious detections from external security assessments, including Tier-1 detections associated with Kaspersky and Sophos. This is a material contradiction to treating the site as benign, even though the observed page is functionally inert and displays only a timestamp. The absence of visible phishing mechanics on the captured page does not offset the confirmed reputation signal.
- External reputation assessment recorded 14 malicious detections and 1 suspicious detection; Kaspersky and Sophos were among the flagged vendors.
- The homepage returned a minimal timestamp-only presentation with no links, forms, login elements, or monetization features.
- The domain-age record reports 4.375085557837098 years; archival observations are dated from 2022-04-06T03:57:52Z through 2025-08-07T23:19:05Z, with 0 recorded snapshots across 4 tracked years.
Regulatory Verification Notes
The site provides no substantive legal, corporate, licensing, or service disclosures in the observed content. Because the page contains no identifiable operating entity or regulated offering, licensing status cannot be established from the website and should be treated as a regulatory verification gap rather than proof of unlawful operation. Independent identity verification remains unresolved. The available broker-intelligence dataset returned no match; that result is contextual only and is not a licensing or regulatory determination. The technical setup confirms ordinary domain registration through IRNIC, Hetzner hosting, and domain-validated transport encryption, but these infrastructure facts do not establish operator legitimacy.
- The homepage contains only a timestamp and no corporate, legal, licensing, terms, or contact disclosure.
- The domain registrar is IRNIC.
- Hosted on AS24940 (HETZNER-AS - Hetzner Online GmbH, DE).
- TLS certificate issued by YR2 at DV validation level, valid to 2026-09-28T00:35:41+00:00.
What to Verify Next
Before any sensitive interaction, an organization should independently establish the operator’s legal identity and confirm whether any intended activity requires authorization by a relevant financial or digital-services regulator. Contact channels and any claimed affiliation should be confirmed through an independently sourced route rather than relying solely on information supplied by the site. Security teams should also compare the domain against current organizational blocklists and monitor for changes in page content or functionality.
- The captured site provides no identity or regulatory material against which an operator claim can be validated.
- No account, payment, or service workflow is exposed on the observed page, so the intended business purpose remains unconfirmed.
- The available broker-intelligence context contains no matched entity record.
Summary Verdict
The overall posture is critical and unsuitable for sensitive interaction. The site’s minimal presentation does not provide sufficient legitimacy evidence, while confirmed external malicious and blacklist signals create a decisive basis for treating the domain as unsafe for credentials, account access, or financial activity.
Infrastructure Integrity
The website is protected by a CDN/WAF layer, and the observed edge address is 5.9.151.249 on AS24940 operated by Hetzner Online GmbH; the origin server was not observable in this analysis. This infrastructure provides some exposure mitigation, but it cannot counteract the domain’s external threat reputation or establish the legitimacy of the operator.
Closing Assessment
Interaction should be limited to passive observation, with no credential submission, account login, downloads, payment activity, or other sensitive action.
Written analysis generated 2026-08-21 by the TrustSniffer Analysis Engine from the evidence in this report.
What the analysis found
2 findings contributed to this verdict, raised by registration and ownership, analysis engine, external reputation.
01 Governance Risk
- The public registration record for this domain is incomplete.Registration and ownership
rule:KF_WHOIS_INCOMPLETE
02 Sensitive Interaction Risk
- The analysis matched a pattern TrustSniffer treats as a direct threat to a visitor.Analysis engine
signal:direct_threat - An external threat feed lists this domain: either Google Safe Browsing marked it malicious, or a significant number of malware engines flagged it.External reputation
rule:EXT_BLACKLIST_CRITICAL
Identity verification
| Status | UNVERIFIED |
|---|---|
| Identity score | 30/100 |
| Identity verification confidence | 50% |
- No on-site identity signals detected
Identity verification measures whether the site can be independently connected to a real-world brand or person. It is separate from the classification confidence.
What TrustSniffer observed
First-party facts recorded during the assessment of bitsoftwares.ir.
- The request stayed on bitsoftwares.ir. It was not redirected to another domain. Clear
- Registration is published under IRNIC. Clear
- DNS for this domain is served by bitsoftwares.ir, across 2 name servers. Noted
- The earliest public archive of this site is from 2022-04-06. Clear
- It is hosted on HETZNER-AS, from a server in DE. Noted
Domain intelligence
| Registrar | IRNIC |
|---|---|
| Hosting | HETZNER-AS - Hetzner Online GmbH, DE |
| Country | DE |
| Server IP | 5.9.151.249 |
| Name servers | ns1.bitsoftwares.ir, ns2.bitsoftwares.ir |
| SSL issuer | YR2 |
| SSL expiry | 2026-09-28 |
| Domain age | 4.38 years (continuous registration) |
| Domain expiry | Not available |
| Archive first seen | 2022-04-06 |
| Archive snapshots | Not counted (archive lookup incomplete) |
| Reputation | VirusTotal: 14 flagged | AbuseIPDB: 0 reports | Google Safe Browsing: 0 matches |
About this assessment
A trust score summarises the evidence TrustSniffer could collect about bitsoftwares.ir at assessment time. It is a starting point for your own judgement, not a guarantee: a high score means the signals were consistent with a legitimately operated site, a low or critical score means several risk patterns were present.
TrustSniffer assesses a website from the evidence it can collect at a point in time: domain registration and age, hosting and certificate, the content the site served, and third-party reputation feeds. A score is a summary of that evidence, not a guarantee and not a legal finding. There is no human rating and no user review in it. A site can change after it is assessed.