dub.co - URL scan, 24 Aug 2026
MalwareAnalyzer by Cyble scanned dub.co and returned a unknown verdict (score -12). The page resolved to 66.33.60.66 on Vercel, Inc in US. 28 domains and 1 IP were contacted, over 34 HTTP requests. 8 malware samples communicate with this URL (Smuggling). The request followed 1 redirect before landing. This is a point-in-time observation from 24 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -12) · Confidence 15%
- Scanned URL:
https://d.to/ - Domain: dub.co · IP: 66.33.60.66 · AS16509 · US
- Server: Vercel
- Page title: Dub - The Modern Link Attribution Platform
- HTTP status: 200 · text/html; charset=utf-8
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Sep 22 13: · subject CN=*.dub.co
- HTTP requests captured: 34
- Scan tier: fast · observed 2026-08-24 04:38:31 UTC
Redirect chain
https://d.to/https://dub.co/?dub_id=CEIn8tRX42GwDoPJ
Malware communicating with this URL (8)
These samples were observed contacting or being served from dub.co. Each links to its full analysis.
- a7be4236158a83a80076be980aba726538830301133df02d185b1b4594850de1 - referenced ·
a7be4236158a83a80076be980aba7265· first seen 2026-08-24 - 17944587501425d33890b410ec014eb9f4c5f01699c82999916101d5e493d243 - referenced ·
17944587501425d33890b410ec014eb9· first seen 2026-08-23 - 4934dfe5b5fbaaacfcae9e4aba0ebf72c02fb601f395d499c6f3a27c0331158e - referenced ·
4934dfe5b5fbaaacfcae9e4aba0ebf72· first seen 2026-08-23 - Smuggling - referenced ·
0c32e55d652bb8e2994a2a58fe36dc81· first seen 2026-08-22 - a8f5e0d28b5a6bcf3fdd9133ac5917993942cfb76d092cfc40441775ba078dcd - referenced ·
a8f5e0d28b5a6bcf3fdd9133ac591799· first seen 2026-08-21 - 451595cbd2f461dc9a18ad8edc65d7c1ad78ccf44a464d97f51f69143f1e7090 - referenced ·
451595cbd2f461dc9a18ad8edc65d7c1· first seen 2026-08-14 - codeMirror.bundle.min.js - referenced ·
7b5277fff495c8fc86f70c16bec5efaa· first seen 2026-08-12 - 31e11345d340663174e1f290a0af454738babe38367d9f699acea44a1caca04a - referenced ·
31e11345d340663174e1f290a0af4547· first seen 2026-08-12
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
Detected technologies
- Vercel
- Next.js
Contacted infrastructure
- 66.33.60.66 - AS16509 Vercel, Inc (United States)
Observed indicators
- dub.co
- assets.dub.co
- flag.vercel.app
- api.fontshare.com
- app.dub.co
- www.google.com
- twil.io
- buff.ly
- framer.link
- partners.dub.co
- vercel.fyi
- poly.market
- toni.es
- try.sprh.mn
- supabase.link
- go.clerk.com
- cal.com
- go.cal.com
- jbbr.pro
- superli.st
Questions about dub.co
- Is dub.co safe?
- The scan of dub.co on 24 Aug 2026 reached no verdict either way (score -12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with dub.co?
- 8 analysed samples communicate with this URL, including Smuggling.
- How was dub.co checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of dub.co
Scanned on MalwareAnalyzer by Cyble · Open interactive scan