rjiminfra.com - URL scan, 13 Aug 2026
MalwareAnalyzer by Cyble scanned rjiminfra.com and returned a unknown verdict (score 0). The page resolved to 91.108.99.217 on IPFFM Internet Provider Frankfurt GmbH in AU. The domain was registered 2366 days ago through HOSTINGER operations, UAB. 12 domains and 1 IP were contacted, over 5 HTTP requests. 3 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 13 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 0) · Confidence 0%
- Scanned URL:
https://rjiminfra.com/wp-content/plugins/super-forms/uploads/php/files/71ffcb557b4d034ec9e25038a8b8a4b8/23763611496.pdf - Domain: rjiminfra.com · IP: 91.108.99.217 · AS47583 · AU
- Server: hcdn
- Page title: RJIM Infra
- HTTP status: 404 · text/html; charset=UTF-8
- Registrar: HOSTINGER operations, UAB · domain age 2366 days · created 2020-02-19
- HTTP requests captured: 5
- Scan tier: fast · observed 2026-08-13 04:10:57 UTC
Malware communicating with this URL (3)
These samples were observed contacting or being served from rjiminfra.com. Each links to its full analysis.
- Phishing - referenced ·
bc369670daefb7ae0bf6f9cf41fd0999· first seen 2026-08-13 - Phishing - referenced ·
ce3ddbb2ef8366f80dd97bcb49c47149· first seen 2026-08-13 - Phishing - referenced ·
4e50eeb39c3607a05829043a7ee92d11· first seen 2026-08-12
Antivirus & YARA (0 of 44 engines)
No engine flagged this page's content.
Detected technologies
- PHP
- Google Analytics
- Bootstrap
Contacted infrastructure
- 91.108.99.217 - AS47583 IPFFM Internet Provider Frankfurt GmbH (Australia)
Observed indicators
- rjiminfra.com
- cdn.jsdelivr.net
- fonts.googleapis.com
- cdnjs.cloudflare.com
- pro.fontawesome.com
- www.googletagmanager.com
- www.clarity.ms
- www.facebook.com
- www.linkedin.com
- www.instagram.com
- quantumbytestudios.in
- wa.me
- 91.108.99.217
- https://rjiminfra.com/wp-content/plugins/super-forms/uploads/php/files/71ffcb557b4d034ec9e25038a8b8a4b8/23763611496.pdf
- https://cdn.jsdelivr.net/npm/bootstrap@5.2.1/dist/css/bootstrap.min.css
- https://rjiminfra.com/wp-content/plugins/super-forms/uploads/php/files/71ffcb557b4d034ec9e25038a8b8a4b8/src/css/main.css
- https://fonts.googleapis.com/css?family=Quicksand
- https://fonts.googleapis.com/css2?family=Material+Symbols+Outlined:opsz,wght,FILL,GRAD@24,400,0,0
- https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/css/all.min.css
- https://pro.fontawesome.com/releases/v5.8.2/css/all.css
Other scans of rjiminfra.com (2)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 19 Aug 2026 - unknown ·
https://rjiminfra.com/wp-content/plugins/super-forms/uploads/php/files/7a29429168368c2690d3877035252 - 13 Aug 2026 - unknown ·
https://rjiminfra.com/wp-content/plugins/super-forms/uploads/php/files/397cddb1d3c51ab4f0addb92a2123
Questions about rjiminfra.com
- Is rjiminfra.com safe?
- The scan of rjiminfra.com on 13 Aug 2026 reached no verdict either way (score 0). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with rjiminfra.com?
- 3 analysed samples communicate with this URL, including Phishing.
- How was rjiminfra.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of rjiminfra.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan