cuadernos.in - URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned cuadernos.in and returned a unknown verdict (score 6). The page resolved to 82.198.232.184 on AS-HOSTINGER - Hostinger International Limited, CY in DE. The domain was registered 5753 days ago through GoDaddy. 4 domains and 1 IP were contacted, over 12 HTTP requests. 1 malware sample communicates with this URL (Phishing). The request followed 2 redirects before landing. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 6) · Confidence 15%
- Scanned URL:
http://www.cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1614348c225ee1---jelimilebivu.pdf - Domain: cuadernos.in · IP: 82.198.232.184 · AS47583 · DE
- Server: LiteSpeed
- Page title: Página no encontrada - Cuadernos IN
- HTTP status: 404 · text/html; charset=UTF-8
- Registrar: GoDaddy · domain age 5753 days · created 2010-11-20
- Registrant country: MX
- TLS issuer: C=US, O=Let's Encrypt, CN=YE1 · valid to Sep 25 01: · subject CN=cuadernos.in
- Evidenced operator: I ORIGINALES SA DE CV
- HTTP requests captured: 12
- Scan tier: fast · observed 2026-08-22 09:47:28 UTC
Redirect chain
http://www.cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1614348c225ee1---jelimilebivu.pdfhttps://www.cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1614348c225ee1---jelimilebivu.pdfhttps://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1614348c225ee1---jelimilebivu.pdf
Malware communicating with this URL (1)
These samples were observed contacting or being served from cuadernos.in. Each links to its full analysis.
- Phishing - referenced ·
145b006ad3960d7b85f6fc8b550994a3· first seen 2026-08-22
Antivirus & YARA (1 of 48 engines)
- YARA: delivr.to detections [yara]: DLV_HTML_Smuggling (page content)
These signatures matched text in the page. Pages that quote or document malware can match them, so on their own they do not make a page malicious.
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
- A signature matched text in the page (DLV_HTML_Smuggling) — pages that discuss malware can match, so this alone is not a malicious verdict
- Cross-host redirect chain
Detected technologies
- LiteSpeed
- PHP
- WordPress
- jQuery
Contacted infrastructure
- 82.198.232.184 - AS47583 AS-HOSTINGER - Hostinger International Limited, CY (DE)
Observed indicators
- cuadernos.in
- gmpg.org
- fonts.googleapis.com
- www.instagram.com
- 82.198.232.184
- https://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1614348c225ee1---jelimilebivu.pdf
- https://gmpg.org/xfn/11
- https://fonts.googleapis.com/
- https://cuadernos.in/feed/
- https://cuadernos.in/comments/feed/
- https://cuadernos.in/wp-content/themes/astra/assets/css/minified/main.min.css?ver=4.7.3
- https://fonts.googleapis.com/css?family=Roboto%3A400%2C700%7CInter%3A600&display=fallback&ver=4.7.3
- https://cuadernos.in/wp-includes/css/dist/block-library/style.min.css?ver=6.9.5
- https://cuadernos.in/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-layout-grid.min.css?ver=4.7.3
- https://cuadernos.in/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-smallscreen-grid.min.css?ver=4.7.3
- https://cuadernos.in/wp-content/themes/astra/assets/css/minified/compatibility/woocommerce/woocommerce-grid.min.css?ver=4.7.3
- https://cuadernos.in/wp-content/uploads/astra-addon/astra-addon-66abcf6dab8e54-25092954.css?ver=4.6.2
- https://cuadernos.in/wp-includes/js/jquery/jquery.min.js?ver=3.7.1
- https://cuadernos.in/wp-includes/js/jquery/jquery-migrate.min.js?ver=3.4.1
- https://cuadernos.in/wp-content/plugins/woocommerce/assets/js/jquery-blockui/jquery.blockUI.min.js?ver=2.7.0-wc.10.7.0
Other scans of cuadernos.in (4)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 16 Aug 2026 - unknown ·
https://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/1613e54ebe0692--- - 15 Aug 2026 - unknown ·
https://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/160748d4a53e9b--- - 15 Aug 2026 - unknown ·
https://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/160732dab66556--- - 15 Aug 2026 - unknown ·
https://cuadernos.in/wp-content/plugins/formcraft/file-upload/server/content/files/160cbbdaeef899---
Questions about cuadernos.in
- Is cuadernos.in safe?
- The scan of cuadernos.in on 22 Aug 2026 reached no verdict either way (score 6). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with cuadernos.in?
- 1 analysed samples communicate with this URL, including Phishing.
- How was cuadernos.in checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of cuadernos.in
Scanned on MalwareAnalyzer by Cyble · Open interactive scan