laps.pl - URL scan, 21 Aug 2026
MalwareAnalyzer by Cyble scanned laps.pl and returned a unknown verdict (score -12). The page resolved to 104.21.42.120 on Cloudflare, Inc. in US. The domain was registered 979 days ago through Aftermarket.pl Limited. 5 domains and 2 IPs were contacted, over 2 HTTP requests. 7 malware samples communicate with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 21 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -12) · Confidence 15%
- Scanned URL:
https://laps.pl/userfiles/file/37969172980.pdf - Domain: laps.pl · IP: 104.21.42.120 · AS13335 · US
- Server: cloudflare
- Page title: laps.pl - Portal o biznesie, finansach, marketingu i ekologii
- HTTP status: 200 · text/html; charset=UTF-8
- Registrar: Aftermarket.pl Limited · domain age 979 days · created 2023-12-15
- Registrant country: PL
- TLS issuer: C=US, O=Google Trust Services, CN=WE1 · valid to Nov 6 01: · subject CN=laps.pl
- Evidenced operator: Traffic Peaks Sp. z o.o.
- HTTP requests captured: 2
- Scan tier: standard · observed 2026-08-21 05:45:37 UTC
Redirect chain
https://laps.pl/userfiles/file/37969172980.pdfhttps://laps.pl/
Malware communicating with this URL (7)
These samples were observed contacting or being served from laps.pl. Each links to its full analysis.
- Phishing - referenced ·
a1522af0a08f82dc199c28d6d1bd5159· first seen 2026-08-20 - Phishing - referenced ·
c61286ba7a74958cdd348c9a22a4dc8c· first seen 2026-08-19 - Phishing - referenced ·
5c2103360f9a6fe567b6d8e2a84424e9· first seen 2026-08-17 - Phishing - referenced ·
fd107476b84df18dad3ca9175e0bba1b· first seen 2026-08-16 - Phishing - referenced ·
3f3914aff99624643a8da80b4179fa75· first seen 2026-08-16 - Phishing - referenced ·
479c8695d5bdec676d5761156ffa077b· first seen 2026-08-15 - Phishing - referenced ·
2ce38e6819977611e7da2fdc82621133· first seen 2026-08-13
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
Detected technologies
- Cloudflare
- WordPress
- Cloudflare Insights
Contacted infrastructure
- 104.21.42.120 - AS13335 Cloudflare, Inc. (United States)
- 172.67.161.218 - AS13335 Cloudflare, Inc. (United States)
Observed indicators
- laps.pl
- fonts.googleapis.com
- fonts.gstatic.com
- images.laps.pl
- static.cloudflareinsights.com
- 104.21.42.120
- 172.67.161.218
- https://laps.pl/
- https://fonts.googleapis.com/
- https://fonts.gstatic.com/
- https://fonts.googleapis.com/css2?family=Ubuntu:ital,wght@0,300;0,400;0,500;0,700;1,300;1,400;1,500;1,700&display=swap
- https://laps.pl/wp-content/themes/tp-wordpress-theme/assets/css/styles.css?ver=7.1
- https://laps.pl/wp-content/themes/tp-wordpress-theme/assets/js/scripts.js?ver=0.1.1
- https://laps.pl/wp-json/
- https://laps.pl/xmlrpc.php?rsd
- https://laps.pl/wp-content/uploads/2024/01/cropped-favicon-laps-1-32x32.webp
- https://laps.pl/wp-content/uploads/2024/01/cropped-favicon-laps-1-192x192.webp
- https://laps.pl/wp-content/uploads/2024/01/cropped-favicon-laps-1-180x180.webp
- https://laps.pl/wp-content/uploads/2025/05/laps-logo.webp
- https://laps.pl/wp-content/themes/tp-wordpress-theme/assets/img/sprite.svg#icon-hamburger
Other scans of laps.pl (9)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 21 Aug 2026 - unknown
- 20 Aug 2026 - unknown
- 16 Aug 2026 - unknown
- 16 Aug 2026 - unknown
- 15 Aug 2026 - unknown
- 15 Aug 2026 - unknown
- 13 Aug 2026 - unknown
- 13 Aug 2026 - unknown
- 9 Aug 2026 - unknown
Questions about laps.pl
- Is laps.pl safe?
- The scan of laps.pl on 21 Aug 2026 reached no verdict either way (score -12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with laps.pl?
- 7 analysed samples communicate with this URL, including Phishing.
- How was laps.pl checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of laps.pl
Scanned on MalwareAnalyzer by Cyble · Open interactive scan