topp.pl - URL scan, 20 Aug 2026
MalwareAnalyzer by Cyble scanned topp.pl and returned a unknown verdict (score 12). The page resolved to 91.217.242.112 on WizjaNet sp. z o.o. in PL. The domain was registered 8558 days ago through Dinfo.pl Sylwia Wierońska. 7 domains and 1 IP were contacted, over 24 HTTP requests. The request followed 1 redirect before landing. This is a point-in-time observation from 20 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 12) · Confidence 15%
- Scanned URL:
http://topp.pl/_topp/file/wemenavidedofizi.pdf - Domain: topp.pl · IP: 91.217.242.112 · AS197279 · PL
- Server: Apache
- Page title: Strona nie została znaleziona - TOPP - Techniki Ochrony Przeciwpożarowej Bielsko-Biała
- HTTP status: 404 · text/html; charset=UTF-8
- Registrar: Dinfo.pl Sylwia Wierońska · domain age 8558 days · created 2003-03-15
- Registrant country: PL
- Evidenced operator: Techniki Ochrony Przeciwpożarowej TOPP
- HTTP requests captured: 24
- Scan tier: fast · observed 2026-08-20 02:31:33 UTC
Redirect chain
http://topp.pl/_topp/file/wemenavidedofizi.pdfhttps://topp.pl/_topp/file/wemenavidedofizi.pdf
Antivirus & YARA (1 of 47 engines)
- YARA: delivr.to detections [yara]: DLV_HTML_Smuggling (page content)
These signatures matched text in the page. Pages that quote or document malware can match them, so on their own they do not make a page malicious.
Why this verdict
- A signature matched text in the page (DLV_HTML_Smuggling) — pages that discuss malware can match, so this alone is not a malicious verdict
Detected technologies
- Apache
- PHP
- WordPress
- Google Analytics
- jQuery
Contacted infrastructure
- 91.217.242.112 - AS197279 WizjaNet sp. z o.o. (Poland)
Observed indicators
- topp.pl
- fonts.googleapis.com
- www.googletagmanager.com
- forum.muffingroup.com
- themeforest.net
- ak-webdesign.pl
- cookiedatabase.org
- 91.217.242.112
- https://topp.pl/_topp/file/wemenavidedofizi.pdf
- https://fonts.googleapis.com/
- https://topp.pl/feed/
- https://topp.pl/comments/feed/
- https://topp.pl/wp-content/plugins/woocommerce/assets/client/blocks/wc-blocks.css?ver=wc-10.2.2
- https://topp.pl/wp-content/plugins/ditty-news-ticker/build/dittyDisplays.css?ver=3.1.59
- https://topp.pl/wp-content/plugins/ditty-news-ticker/includes/libs/fontawesome-6.4.0/css/all.css?ver=6.4.0
- https://topp.pl/wp-content/plugins/woocommerce/assets/css/woocommerce-layout.css?ver=10.2.2
- https://topp.pl/wp-content/plugins/woocommerce/assets/css/woocommerce-smallscreen.css?ver=10.2.2
- https://topp.pl/wp-content/plugins/woocommerce/assets/css/woocommerce.css?ver=10.2.2
- https://topp.pl/wp-content/plugins/complianz-gdpr/assets/css/cookieblocker.min.css?ver=1759861247
- https://topp.pl/wp-content/plugins/woocommerce/assets/css/brands.css?ver=10.2.2
Other scans of topp.pl (1)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 20 Aug 2026 - unknown
Questions about topp.pl
- Is topp.pl safe?
- The scan of topp.pl on 20 Aug 2026 reached no verdict either way (score 12). Too little was captured to judge it, which is an unknown rather than a pass.
- How was topp.pl checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of topp.pl
Scanned on MalwareAnalyzer by Cyble · Open interactive scan