bettenbaehren.de - URL scan, 15 Aug 2026
MalwareAnalyzer by Cyble scanned bettenbaehren.de and returned a unknown verdict (score 0). The page resolved to 162.55.147.30 on Hetzner Online GmbH in DE. 11 domains and 1 IP were contacted, over 12 HTTP requests. 12 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 15 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 0) · Confidence 0%
- Scanned URL:
https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/160b008f5baf22---34130078494.pdf - Domain: bettenbaehren.de · IP: 162.55.147.30 · AS24940 · DE
- Server: nginx
- Page title: Seite nicht gefunden » ✓ Betten München
- HTTP status: 404 · text/html; charset=UTF-8
- HTTP requests captured: 12
- Scan tier: fast · observed 2026-08-15 17:04:15 UTC
Malware communicating with this URL (12)
These samples were observed contacting or being served from bettenbaehren.de. Each links to its full analysis.
- Phishing - referenced ·
870dfadc57945af0b8edd515c8763ee8· first seen 2026-08-15 - Phishing - referenced ·
d5bb95252d3d5ff65c5a073de9f385cb· first seen 2026-08-15 - Phishing - referenced ·
c9f8bcf4ab9edc77069738b582f8341e· first seen 2026-08-15 - Phishing - referenced ·
7555c83ba5aaf1727dfdcca2e7a5ae73· first seen 2026-08-15 - Phishing - referenced ·
af64a6f6553c5f2d3d3e836a6b8f5e34· first seen 2026-08-15 - Phishing - referenced ·
a534e640c8288faabc032e3ab0974c73· first seen 2026-08-14 - Phishing - referenced ·
adf5aca45dc5df1f06df40a4d48193fd· first seen 2026-08-14 - Phishing - referenced ·
69290123132905187d4a4c83f5c20135· first seen 2026-08-14 - Phishing - referenced ·
030916a1fba59eb333a734f8e6589957· first seen 2026-08-14 - Phishing - referenced ·
77e8b5ba8f14bbed1589f0e7a8dd8807· first seen 2026-08-13 - Phishing - referenced ·
217b5aa26c08e1c3ceb716d52e502c2c· first seen 2026-08-13 - Phishing - referenced ·
71d842ac3906b49cbdb58a6c4fa6db65· first seen 2026-08-12
Antivirus & YARA (0 of 44 engines)
No engine flagged this page's content.
Detected technologies
- Nginx
- WordPress
- Google Analytics
- jQuery
Contacted infrastructure
- 162.55.147.30 - AS24940 Hetzner Online GmbH (Germany)
Observed indicators
- bettenbaehren.de
- gmpg.org
- html5shiv.googlecode.com
- fonts.googleapis.com
- s.w.org
- www.googletagmanager.com
- www.facebook.com
- www.instagram.com
- www.betten-baehren.de
- cdn.mouseflow.com
- www.bettenbaehren.de
- 162.55.147.30
- https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/160b008f5baf22---34130078494.pdf
- http://gmpg.org/xfn/11
- https://bettenbaehren.de/xmlrpc.php
- https://html5shiv.googlecode.com/svn/trunk/html5.js
- https://bettenbaehren.de/wp-content/uploads/2015/06/Betten-B%C3%A4hren-Favicon.jpg
- https://bettenbaehren.de/
- https://fonts.googleapis.com/
- https://s.w.org/
Other scans of bettenbaehren.de (4)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/1613ca6e430fb - 16 Aug 2026 - unknown ·
https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/160a0f84acb39 - 15 Aug 2026 - unknown ·
https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/16099352ac80b - 14 Aug 2026 - unknown ·
https://bettenbaehren.de/wp-content/plugins/formcraft/file-upload/server/content/files/1614b2b410091
Questions about bettenbaehren.de
- Is bettenbaehren.de safe?
- The scan of bettenbaehren.de on 15 Aug 2026 reached no verdict either way (score 0). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with bettenbaehren.de?
- 12 analysed samples communicate with this URL, including Phishing.
- How was bettenbaehren.de checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of bettenbaehren.de
Scanned on MalwareAnalyzer by Cyble · Open interactive scan