danieldesignpro.com - URL scan, 23 Aug 2026
MalwareAnalyzer by Cyble scanned danieldesignpro.com and returned a unknown verdict (score -2), categorised as credential-harvest. The page resolved to 202.181.163.150 on IXTECH NETWORK LIMITED in HK. 4 domains and 1 IP were contacted, over 27 HTTP requests. 7 malware samples communicate with this URL (Phishing, GenericKD). The request followed 1 redirect before landing. This is a point-in-time observation from 23 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -2) · Confidence 8%
- Scanned URL:
http://danieldesignpro.com/userfiles/91965595395.pdf - Domain: danieldesignpro.com · IP: 202.181.163.150 · AS7540 · HK
- Server: Apache
- Page title: Page not found – Daniel Design and Production
- HTTP status: 404 · text/html; charset=UTF-8
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Nov 16 18: · subject CN=www.danieldesignpro.com
- HTTP requests captured: 27
- Scan tier: standard · observed 2026-08-23 16:05:36 UTC
Redirect chain
http://danieldesignpro.com/userfiles/91965595395.pdfhttps://danieldesignpro.com/userfiles/91965595395.pdf
Malware communicating with this URL (7)
These samples were observed contacting or being served from danieldesignpro.com. Each links to its full analysis.
- Phishing - referenced ·
b06489462a8d808669503340428eccfd· first seen 2026-08-20 - Phishing - referenced ·
007ccc374f13bb6f5994f2c0f70e6910· first seen 2026-08-16 - Phishing - referenced ·
9531171ac2115eecdc4a264ca942bec1· first seen 2026-08-15 - Phishing - referenced ·
ca12c28fab9ee08573448b1ea8a1e456· first seen 2026-08-15 - GenericKD - referenced ·
3bc5877c50826a8be72c052c78482431· first seen 2026-08-14 - Phishing - referenced ·
534b16e9730a690dac7cdd4cd7560867· first seen 2026-08-14 - Phishing - referenced ·
8fa76ec283bbbe3980abed1a493f89f5· first seen 2026-08-11
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Categories
- credential-harvest
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
- Credential-harvesting form
Detected technologies
- Apache
- PHP
- WordPress
- jQuery
Contacted infrastructure
- 202.181.163.150 - AS7540 IXTECH NETWORK LIMITED (Hong Kong)
Observed indicators
- danieldesignpro.com
- stats.wp.com
- c0.wp.com
- fonts.googleapis.com
- 202.181.163.150
- https://danieldesignpro.com/userfiles/91965595395.pdf
- https://stats.wp.com/
- https://c0.wp.com/
- https://danieldesignpro.com/feed/
- https://danieldesignpro.com/comments/feed/
- https://c0.wp.com/c/6.5.8/wp-includes/css/dist/block-library/style.min.css
- https://c0.wp.com/c/6.5.8/wp-includes/js/mediaelement/mediaelementplayer-legacy.min.css
- https://c0.wp.com/c/6.5.8/wp-includes/js/mediaelement/wp-mediaelement.min.css
- https://c0.wp.com/p/woocommerce/6.1.3/packages/woocommerce-blocks/build/wc-blocks-vendors-style.css
- https://c0.wp.com/p/woocommerce/6.1.3/packages/woocommerce-blocks/build/wc-blocks-style.css
- https://danieldesignpro.com/wp-content/plugins/danieldesignpro/public/css/danieldesignpro-public.css?ver=1.0.0
- https://c0.wp.com/p/woocommerce/6.1.3/assets/css/woocommerce-layout.css
- https://c0.wp.com/p/woocommerce/6.1.3/assets/css/woocommerce-smallscreen.css
- https://c0.wp.com/p/woocommerce/6.1.3/assets/css/woocommerce.css
- https://danieldesignpro.com/wp-content/themes/daniel-design/style.css?ver=1.0.0
Other scans of danieldesignpro.com (2)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 15 Aug 2026 - unknown ·
http://danieldesignpro.com/userfiles/85269193416.pdf - 15 Aug 2026 - unknown ·
http://danieldesignpro.com/userfiles/85269193416.pdf
Questions about danieldesignpro.com
- Is danieldesignpro.com safe?
- The scan of danieldesignpro.com on 23 Aug 2026 reached no verdict either way (score -2). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with danieldesignpro.com?
- 7 analysed samples communicate with this URL, including Phishing, GenericKD.
- How was danieldesignpro.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of danieldesignpro.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan