rockhousemethod.com - URL scan, 19 Aug 2026
MalwareAnalyzer by Cyble scanned rockhousemethod.com and returned a unknown verdict (score -2), categorised as credential-harvest. The page resolved to 3.143.39.163 on Amazon Technologies Inc. in US. 4 domains and 1 IP were contacted, over 16 HTTP requests. 1 malware sample communicates with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 19 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -2) · Confidence 8%
- Scanned URL:
http://rockhousemethod.com/ckfinder/userfiles/files/17269749527.pdf - Domain: rockhousemethod.com · IP: 3.143.39.163 · AS16509 · US
- Server: nginx/1.24.0 (Ubuntu)
- Page title: 404: This page could not be found.
- HTTP status: 404 · text/html; charset=utf-8
- TLS issuer: C=US, O=Let's Encrypt, CN=YE2 · valid to Oct 22 09: · subject CN=rockhousemethod.com
- HTTP requests captured: 16
- Scan tier: standard · observed 2026-08-19 18:06:59 UTC
Redirect chain
http://rockhousemethod.com/ckfinder/userfiles/files/17269749527.pdfhttps://rockhousemethod.com/ckfinder/userfiles/files/17269749527.pdf
Malware communicating with this URL (1)
These samples were observed contacting or being served from rockhousemethod.com. Each links to its full analysis.
- Phishing - referenced ·
3d85eb5ebff9e27e4c36d6a9860c2b9d· first seen 2026-08-17
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- credential-harvest
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
- Credential-harvesting form
Detected technologies
- Nginx
- Next.js
Contacted infrastructure
- 3.143.39.163 - AS16509 Amazon Technologies Inc. (United States)
Observed indicators
- rockhousemethod.com
- www.facebook.com
- www.youtube.com
- twitter.com
- 3.143.39.163
- https://rockhousemethod.com/ckfinder/userfiles/files/17269749527.pdf
- https://rockhousemethod.com/logo.png?v=20260716
- https://rockhousemethod.com/_next/static/css/3158e60f63f06d19.css
- https://rockhousemethod.com/_next/static/chunks/webpack-5c1421772afc6826.js
- https://rockhousemethod.com/_next/static/chunks/4bd1b696-215e5051988c3dde.js
- https://rockhousemethod.com/_next/static/chunks/794-2e9f20eba326fbe9.js
- https://rockhousemethod.com/_next/static/chunks/main-app-18ae450ef95f2562.js
- https://rockhousemethod.com/_next/static/chunks/500-c99b8dfd3de17c86.js
- https://rockhousemethod.com/_next/static/chunks/753-5d35a7930e664e74.js
- https://rockhousemethod.com/_next/static/chunks/923-173a2e4d6b64394d.js
- https://rockhousemethod.com/_next/static/chunks/705-afba59d6b727b3f8.js
- https://rockhousemethod.com/_next/static/chunks/509-cc0217c1eb9d35f7.js
- https://rockhousemethod.com/_next/static/chunks/67-934ee348d0574916.js
- https://rockhousemethod.com/_next/static/chunks/864-c7a576df290964a1.js
- https://rockhousemethod.com/_next/static/chunks/370-775ec5f6722c384d.js
Other scans of rockhousemethod.com (6)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/zarewudiworowojeli.pdf - 22 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/99452765411.pdf - 22 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/61605606315.pdf - 22 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/61605606315.pdf - 17 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/40330126836.pdf - 17 Aug 2026 - unknown ·
https://rockhousemethod.com/ckfinder/userfiles/files/40330126836.pdf
Questions about rockhousemethod.com
- Is rockhousemethod.com safe?
- The scan of rockhousemethod.com on 19 Aug 2026 reached no verdict either way (score -2). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with rockhousemethod.com?
- 1 analysed samples communicate with this URL, including Phishing.
- How was rockhousemethod.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of rockhousemethod.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan