www.comesa.com.pe - URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned www.comesa.com.pe and returned a unknown verdict (score 10), categorised as credential-harvest. The page resolved to 35.209.208.156 on Google LLC in US. 7 domains and 1 IP were contacted, over 25 HTTP requests. 1 malware sample communicates with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 10) · Confidence 13%
- Scanned URL:
https://comesa.com.pe/wp-content/plugins/super-forms/uploads/php/files/6urhn17f4tjcmu5ccl1stc1f94/64381280418.pdf - Domain: www.comesa.com.pe · IP: 35.209.208.156 · AS15169 · US
- Server: nginx
- Page title: Página no encontrada - COMESA
- HTTP status: 404 · text/html; charset=UTF-8
- HTTP requests captured: 25
- Scan tier: fast · observed 2026-08-22 16:51:44 UTC
Redirect chain
https://comesa.com.pe/wp-content/plugins/super-forms/uploads/php/files/6urhn17f4tjcmu5ccl1stc1f94/64381280418.pdfhttps://www.comesa.com.pe/wp-content/plugins/super-forms/uploads/php/files/6urhn17f4tjcmu5ccl1stc1f94/64381280418.pdf
Malware communicating with this URL (1)
These samples were observed contacting or being served from www.comesa.com.pe. Each links to its full analysis.
- Phishing - referenced ·
47b06482ac638574e31c2acb527f73d8· first seen 2026-08-22
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Categories
- credential-harvest
Why this verdict
- Credential-harvesting form
Detected technologies
- Nginx
- WordPress
- Google Analytics
- jQuery
Contacted infrastructure
- 35.209.208.156 - AS15169 Google LLC (United States)
Observed indicators
- www.comesa.com.pe
- gmpg.org
- fonts.googleapis.com
- www.googletagmanager.com
- snap.licdn.com
- px.ads.linkedin.com
- www.linkedin.com
- 35.209.208.156
- https://www.comesa.com.pe/wp-content/plugins/super-forms/uploads/php/files/6urhn17f4tjcmu5ccl1stc1f94/64381280418.pdf
- http://gmpg.org/xfn/11
- https://www.comesa.com.pe/xmlrpc.php
- https://www.comesa.com.pe/wp-content/uploads/2020/09/favicon.ico
- https://fonts.googleapis.com/
- https://www.googletagmanager.com/
- https://www.comesa.com.pe/feed/
- https://www.comesa.com.pe/comments/feed/
- https://www.comesa.com.pe/wp-content/plugins/awsm-team-pro/css/team.min.css?scu_version=27
- https://www.comesa.com.pe/wp-content/plugins/contact-form-7/includes/css/styles.css?scu_version=27
- https://www.comesa.com.pe/wp-content/plugins/revslider/public/assets/css/rs6.css?scu_version=27
- https://www.comesa.com.pe/wp-content/plugins/js_composer/assets/css/js_composer.min.css?scu_version=27
Questions about www.comesa.com.pe
- Is www.comesa.com.pe safe?
- The scan of www.comesa.com.pe on 22 Aug 2026 reached no verdict either way (score 10). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with www.comesa.com.pe?
- 1 analysed samples communicate with this URL, including Phishing.
- How was www.comesa.com.pe checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of www.comesa.com.pe
Scanned on MalwareAnalyzer by Cyble · Open interactive scan