drahmetbostanci.com - URL scan, 20 Aug 2026
MalwareAnalyzer by Cyble scanned drahmetbostanci.com and returned a unknown verdict (score 10), categorised as credential-harvest. The page resolved to 104.21.13.139 on Cloudflare, Inc. in US. The domain was registered 5867 days ago through ODTU Gelistirme Vakfi Bilgi Teknolojileri Sanayi Ve Ticaret Anonim Sirketi. 6 domains and 1 IP were contacted, over 45 HTTP requests. 11 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 20 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 10) · Confidence 13%
- Scanned URL:
https://drahmetbostanci.com/wp-content/plugins/formcraft/file-upload/server/content/files/16148909ded32b---waserob.pdf - Domain: drahmetbostanci.com · IP: 104.21.13.139 · AS13335 · US
- Server: cloudflare
- Page title: Page not found – Uzm. Dr Ahmet Bostancı – Riskli Gebelik Uzmanı
- HTTP status: 404 · text/html; charset=UTF-8
- Registrar: ODTU Gelistirme Vakfi Bilgi Teknolojileri Sanayi Ve Ticaret Anonim Sirketi · domain age 5867 days · created 2010-07-27
- HTTP requests captured: 45
- Scan tier: fast · observed 2026-08-20 08:11:39 UTC
Malware communicating with this URL (11)
These samples were observed contacting or being served from drahmetbostanci.com. Each links to its full analysis.
- Phishing - referenced ·
e9eb6402c27e41eb80a98ac7198c7827· first seen 2026-08-20 - Phishing - referenced ·
58eb61a1092238543b5b81844a071673· first seen 2026-08-20 - Phishing - referenced ·
60a154182fdf94eb762dbd96f51a370b· first seen 2026-08-16 - Phishing - referenced ·
517b0c98359415027cce6c770ca64d4a· first seen 2026-08-16 - 1759d935cf656fda3289abfd430c230a8c94b5dcd7a83a1454f7a0235ddb06d8 - referenced ·
1759d935cf656fda3289abfd430c230a· first seen 2026-08-14 - Phishing - referenced ·
4169d80b327456bbd86c13705ce94b78· first seen 2026-08-14 - Phishing - referenced ·
6ac971484ffc3a9ac31965a1a17e2015· first seen 2026-08-13 - Phishing - referenced ·
b95fcd69494d376de23cfd17d2e41d48· first seen 2026-08-13 - Phishing - referenced ·
54e83233e5da795d9b2b827948bbeb88· first seen 2026-08-13 - Phishing - referenced ·
61f4db87f27ae24de12af5bb86dfd6fa· first seen 2026-08-12 - Phishing - referenced ·
ea0046f60d229ded647e1cb7378f9ed5· first seen 2026-08-11
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- credential-harvest
Why this verdict
- Credential-harvesting form
Detected technologies
- Cloudflare
- PHP
- WordPress
- jQuery
- Bootstrap
- Cloudflare Insights
Contacted infrastructure
- 104.21.13.139 - AS13335 Cloudflare, Inc. (United States)
Observed indicators
- drahmetbostanci.com
- fonts.googleapis.com
- facebook.com
- www.google.com
- youtube.com
- static.cloudflareinsights.com
- 104.21.13.139
- https://drahmetbostanci.com/wp-content/plugins/formcraft/file-upload/server/content/files/16148909ded32b---waserob.pdf
- https://fonts.googleapis.com/css?family=Roboto%3Aregular%2C400%2C700%2C900%7CExo%3A700%2C400%2C900
- https://fonts.googleapis.com/
- https://drahmetbostanci.com/feed/
- https://drahmetbostanci.com/comments/feed/
- https://drahmetbostanci.com/wp-content/plugins/elementor/assets/css/frontend.min.css?ver=3.29.2
- https://drahmetbostanci.com/wp-content/uploads/elementor/css/post-8.css?ver=1750533158
- https://drahmetbostanci.com/wp-content/uploads/elementor/css/post-674.css?ver=1750533159
- https://drahmetbostanci.com/wp-includes/css/dist/block-library/style.min.css?ver=6.5.10
- https://drahmetbostanci.com/wp-content/plugins/whatsapp-for-wordpress/assets/dist/css/style.css?ver=6.5.10
- https://drahmetbostanci.com/wp-content/plugins/woocommerce/assets/css/woocommerce-layout.css?ver=9.4.5
- https://drahmetbostanci.com/wp-content/plugins/woocommerce/assets/css/woocommerce-smallscreen.css?ver=9.4.5
- https://drahmetbostanci.com/wp-content/plugins/woocommerce/assets/css/woocommerce.css?ver=9.4.5
Other scans of drahmetbostanci.com (2)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 14 Aug 2026 - unknown ·
https://drahmetbostanci.com/wp-content/plugins/formcraft/file-upload/server/content/files/16144ed948 - 12 Aug 2026 - unknown ·
https://drahmetbostanci.com/wp-content/plugins/formcraft/file-upload/server/content/files/1615a45a8e
Questions about drahmetbostanci.com
- Is drahmetbostanci.com safe?
- The scan of drahmetbostanci.com on 20 Aug 2026 reached no verdict either way (score 10). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with drahmetbostanci.com?
- 11 analysed samples communicate with this URL, including Phishing.
- How was drahmetbostanci.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of drahmetbostanci.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan