jjc-dev.com - malicious URL scan, 15 Aug 2026
MalwareAnalyzer by Cyble scanned jjc-dev.com and returned a malicious verdict (score 83). The page resolved to 124.150.132.18 on PUMO NETWORK DIGITAL TECHNOLOGY CO.,LTD in TW. The domain was registered 6152 days ago through Web Commerce Communications Limited dba WebNic.cc. 1 domain and 1 IP were contacted. 3 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 15 Aug 2026; the page may have changed since.
Scan result
- Verdict: malicious (score 83) · Confidence 69%
- Scanned URL:
http://jjc-dev.com/userfiles/file/81039566916.pdf - Domain: jjc-dev.com · IP: 124.150.132.18 · AS38843 · TW
- Server: Apache/2.0.52 (CentOS)
- HTTP status: 200 · application/pdf
- Registrar: Web Commerce Communications Limited dba WebNic.cc · domain age 6152 days · created 2009-10-10
- Scan tier: standard · observed 2026-08-15 06:51:17 UTC
Malware communicating with this URL (3)
These samples were observed contacting or being served from jjc-dev.com, and at least one was hosted here. Each links to its full analysis.
- Phishing - referenced (hosted here) ·
96927f1e96e23426f087e0e88e4ce310· first seen 2026-08-15 - Phishing - referenced (hosted here) ·
7d55eb8147c698d607e1b3310f229903· first seen 2026-08-13 - Phishing - referenced ·
8765c5a81f91006f9405f91ece68ce4c· first seen 2026-08-11
Antivirus & YARA (1 of 44 engines)
- ClamAV (daily) [av]: Pdf.Phishing.Trojan-d2568dad23a94d95-d2568dad23a94d95-10044375-0 (served file)
Why this verdict
- Hosts payload/config for 1 malware sample (Phishing)
- Antivirus/YARA detection in page content: Pdf.Phishing.Trojan-d2568dad23a94d95-d2568dad23a94d95-10044375-0
- File download routed to the malware sandbox (81039566916.pdf)
- Served over plaintext HTTP
Detected technologies
- Apache
Contacted infrastructure
- 124.150.132.18 - AS38843 PUMO NETWORK DIGITAL TECHNOLOGY CO.,LTD (Taiwan)
Files served by this page
- 81039566916.pdf ·
870d1fcbc48575d3c0b39fff761e37ee
Observed indicators
- jjc-dev.com
- 124.150.132.18
- http://jjc-dev.com/userfiles/file/81039566916.pdf
Other scans of jjc-dev.com (9)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 22 Aug 2026 - malicious ·
http://jjc-dev.com/userfiles/file/ledaviw.pdf - 22 Aug 2026 - malicious ·
http://jjc-dev.com/userfiles/file/ledaviw.pdf - 15 Aug 2026 - malicious
- 15 Aug 2026 - malicious
- 15 Aug 2026 - malicious
- 15 Aug 2026 - malicious
- 15 Aug 2026 - malicious
- 13 Aug 2026 - malicious ·
http://jjc-dev.com/userfiles/file/tewitafawatifagamen.pdf - 13 Aug 2026 - malicious ·
http://jjc-dev.com/userfiles/file/tewitafawatifagamen.pdf
Questions about jjc-dev.com
- Is jjc-dev.com safe?
- No. MalwareAnalyzer scanned jjc-dev.com on 15 Aug 2026 and returned a malicious verdict with a score of 83 out of 100. Treat it as hostile until it is re-checked.
- What malware is associated with jjc-dev.com?
- 3 analysed samples communicate with this URL, including Phishing. At least one was served directly from this host.
- How was jjc-dev.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of jjc-dev.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan