SUSPICIOUS

Warning signs detected

2 of 91 antivirus engines flag this page. Several risk indicators suggest caution. This site might be legitimate — but treat it as unverified until you can independently confirm.

Security Review

Is api.courier-integrator.com legit or a scam?

Our verdict:Suspicious· 30/100

Unprofessional API endpoint blacklisted as phishing by Gridinsoft and malicious by Webroot, showing raw JSON with no clear legitimate purpose.

api.courier-integrator.comScanned 37d ago
0
Trust score
SUSPICIOUS
Heuristics 0·MT 28
Category tags
api-servicecourier#Phishing#Data Harvester85% MT confidence
Technical red flags (1)

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
0/91
Engines flagged this URL
Domain Age
7 years old
Registered Apr 12, 2019
MT Intelligence
Suspicious
High likelihood · 85% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
High scam likelihoodengineMT · Guardiantrust28/100
MT AgentLive web researchVisual inspection
0%
Confidence
The page serves raw JSON data on a plain black background, typical for an API but with poor, unprofessional styling that raises doubts. Gridinsoft flags it as phishing and a scam site linked to deceptive practices or data collection, while Webroot marks it malicious. The main domain courier-integrator.com faces broader blacklists from 9 vendors including Fortinet and CyRadar. Despite the domain's 7-year age and clean hosting IP, these security detections override the neutral signals like valid SSL and no browser blocks.
Full dossier
Analysis complete

Page Content

  • Displays raw JSON response directly in the browser on a black background.
  • No interactive elements, forms, or user-facing design — appears as a backend API endpoint.
  • Poor visual quality lacks polish expected from legitimate services.
  • Infrastructure

    • Hosted on DigitalOcean in Singapore (IP 178.128.84.23) with clean abuse history.
    • Valid Let's Encrypt SSL certificate, 78 days until expiry.
    • No redirects or suspicious encoding.

    Domain History

    • Domain courier-integrator.com registered in 2019, expires 2027, via Indonesian registrar.
    • WHOIS privacy protected; nameservers on DigitalOcean.
    • Subdomain api.courier-integrator.com shares the aged root domain.

    Web Reputation

    • 2/91 antivirus engines flag it: Gridinsoft (phishing/scam), Webroot (malicious).
    • Main domain blacklisted by 9 vendors; no browser blocklist hits.
    • No user reviews or complaints found; mentioned in Indonesian Facebook groups for tracking.
Risk Factors
6
  • Gridinsoft classifies it as a scam site for deceptive offers or data collection under false pretenses.
  • Flagged as phishing by Gridinsoft and malicious by Webroot in our antivirus network.
  • Main domain courier-integrator.com blacklisted by 9 security vendors including Fortinet and CyRadar.
  • Raw JSON display with unprofessional black background suggests non-public API misused or suspicious.
  • Gridinsoft assigns only 10/100 trust score to this subdomain.
  • No business registration details available despite Indonesian ties.
Positive Signals
5
  • Domain root aged over 7 years with upcoming 2027 expiry.
  • Hosting IP has zero abuse reports and clean reputation.
  • Valid SSL certificate from Let's Encrypt.
  • Clean on major browser blocklists.
  • No sandbox detections or suspicious redirects.
AI Recommendation
Do not send requests or data to this API endpoint. Use established courier services with verified apps or sites instead.
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of api.courier-integrator.com
LIVE RENDER
api.courier-integrator.com

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site. See full visual analysis →

Visual Screenshot Analysis

We capture a fresh screenshot of the live page and ask a vision model to look for scam visual patterns — fake trust badges, countdown timers, overlay pop-ups, and visual clones of legitimate brands.

50
/ 100
High visual risk

Visual red flags detected in the screenshot

Screenshot shows a fully-rendered page displaying raw JSON content with unprofessional styling, but lacks specific scam indicators like trust badges, timers, or forms.

Visual risk50/100

What our vision model saw

1 signal

Poor design quality, unprofessional appearance with raw JSON displayed on black background

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for api.courier-integrator.com, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Domain age
7.1 yrs
Registered Apr 2019
Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Not a clone
No well-known site's layout or branding detected here.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
2 scam reports
Key findings
7 headline facts from open-web research
  • Domain courier-integrator.com registered on 2019-04-12T09:43:22Z, expires 2027-04-12, via registrar CV. Rumahweb Indonesia
  • WHOIS registrant details privacy protected; nameservers NS1-3.DIGITALOCEAN.COM
  • Hosted on DigitalOcean LLC (AS14061), Singapore
  • Gridinsoft assigns 1/100 trust score to courier-integrator.com and 10/100 to api.courier-integrator.com, categorizing both as Scam Website
  • courier-integrator.com blacklisted by 9 vendors: Gridinsoft (Warned), ADMINUSLabs/Webroot/Lionic/CyRadar/CRDF/Chong Lua Dao (Malicious), Fortinet (Phishing), alphaMountain.ai (Suspicious)
  • api.courier-integrator.com blacklisted by 2 vendors: Gridinsoft (Warned), Webroot (Malicious)
  • No user reviews found on Trustpilot, Reddit, or ScamAdviser; mentioned in Indonesian Facebook Starlink groups for tracking
Scam reports (2)
Direct quotes from public scam databases, forums, and news.
  • Gridinsoftopen

    "Classified as Scam Website based on multiple risk signals, including 9 blacklist detections. Gridinsoft blocks this website because it was classified as scam website."

  • Gridinsoftopen

    "Api.courier-integrator.com is in our scam category. This label is used for domains linked to deceptive offers, non-fulfillment after payment, or data collection under false pretenses."

Research summary
Narrative write-up from our AI analyst, grounded on the facts above
Our research found two scam reports from Gridinsoft, labeling api.courier-integrator.com and its parent domain as scam websites due to blacklist detections and links to deceptive practices or data collection. The main domain faces 9 blacklists, with low trust scores of 1/100 and 10/100. No user reviews on independent sites, no complaints, and no business registration; briefly mentioned in Indonesian Facebook Starlink groups for tracking purposes.

Antivirus Engines

Detection matrix · live
2 engines flagged this URL

We cross-check every URL against our antivirus network of 91 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

2Malicious0Suspicious56Harmless91Engines
0
of 91
Gridinsoft
Malicious· phishing
Webroot
Malicious· malicious

2 antivirus engines flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Sandbox Render
Page rendered in a safe sandbox
Requests made0
Unique IPs0
Countries1
Detected brandsNone

Domain & Encryption

Domain History
Age7 years old
RegistrarCV. Rumahweb Indonesia
RegisteredApr 12, 2019
ExpiresApr 12, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.2
IssuerLet's Encrypt · R12
ExpiresJul 16, 2026 (78d)
Self-signedNo
Hosting & Technology
HostingDigitalOcean, LLC
Server locationSG

Server Reputation

Hosting
CountrySingapore
NetworkDIGITALOCEAN-ASN - DigitalOcean, LLC, US
IP address178.128.84.23
Abuse Intelligence
Confidence score0%
Reports on file0
ISPDigitalOcean, LLC
Usage typeData Center/Web Hosting/Transit

Scam-Type Likelihood

1 scam-type patterns detected
Scam-Type Likelihood

0 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Phishing
Phishing
Low-level signals
0/100
  • AI analyst tagged this as phishing.

Warning: phishing patterns

This page shows signs of attempting to steal credentials or impersonate a trusted brand.

  • Treat api.courier-integrator.com as unverified

    Do not enter credentials or send money until you have independently verified the business.

  • If you already typed your password — change it now

    Change the password on the legitimate site and anywhere else you re-used it. Turn on two-factor authentication. Review recent account activity.

  • Report the phishing URL

    APWG (Anti-Phishing Working Group) accepts phishing reports at reportphishing@apwg.org. Google Safe Browsing reports help protect other users.

    Open
  • Get help on the forum

    MalwareTips members can help you assess damage and next steps.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
VirusTotal
ListedCheck ↗
AbuseIPDB
Not listedCheck ↗

Safety FAQ

Common questions about this site, answered from the scan data on this page. These are auto-generated — not hand-written — so they always match the underlying report.

  • Our automated security review marked api.courier-integrator.com as suspicious. Several warning signs were detected; it may still turn out legitimate, but you should verify it through independent channels before trusting it with money or credentials.

Final Verdict

0
Trust / 100
Final Verdict·api.courier-integrator.com
SUSPICIOUS

This API endpoint for a courier integrator displays raw JSON on a black background. Our antivirus network flags it as phishing by Gridinsoft and malicious by Webroot, with scam classifications from security vendors. Avoid sending data to it.

Do not send requests or data to this API endpoint. Use established courier services with verified apps or sites instead.

AV engines
91
MT passes
2
Net signals
0
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Suspicious reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
Scanned by
JackStaff
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.