Security Scan Report: www.p-e-c.nl

Submitted: Sep 18, 2026, 5:47:43 AMCompleted: Sep 18, 2026, 5:48:42 AMpubliccompleted

This website contacted 3 IPs in 3 countries across 1 domain to perform 2 HTTP transactions. The main domain is p-e-c.nl and was registered 27 years ago.

Submitted URL: https://www.p-e-c.nl/wp-content/themes/twentytwentyone/hudiiiwj1.php?id=1

AI Security Verdict

High Risk

Confidence: 80%

7
Risk Score

Malware Indicators of Compromise match exact URL on an established courier domain, likely compromised. Avoid visiting /wp-content/themes/twentytwentyone/hudiiiwj1.php?id=1.

Risk Factors (4)
Malware-family Indicators of Compromise match on the exact URL
Suspicious random-named PHP file in WordPress theme directory
Compromised WordPress pattern consistent with webshell/backdoor hosting
Single-source but content-malware-typed threat intelligence match
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Domain Name Analysis

The domain name 'www.p-e-c.nl' uses the Dutch country-code top-level domain (.nl) and includes subdomain 'www'. The second-level label 'p-e-c' is 5 characters long holding one vowel versus 2 consonants; it also includes 2 hyphens. Segmentation suggests 3 words: p, e, c. Median word length comes out to 1 character. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.p-e-c.nl/wp-content/themes/twentytwentyone/hudiiiwj1.php?id=1

Page Load Overview

0.57s
Total Load Time
0 KB
Total Size

Language Analysis

Primary Language

🇩🇰Danish
Code: da
Confidence:43%
Script:Latin
Direction:ltr

Detection Details

Text Length:56 chars
Detector Agreement:100%

Website Classification

Primary Category

adult content48% confidence
Type: static
Method: ml+structural

All Detected Categories

adult content
48%
gambling betting
43%
government public service
42%
news media journalism
34%
cryptocurrency blockchain
31%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2185.104.29.64Netherlands
AS206281Stichting DIGI NL
0142.251.127.95Google · CDNUnited States
AS15169Google LLC
0159.69.51.30Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
23--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T112F28438B19541A97F3B87BEF086B7287DAC9300D54167B6B8F9535D89C90F700B6A0E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:ANu/4gjrrnZdSZUaA8kW92HNjPgKyfKLp+01EAqtR:AkXPZdypzQHNTgnAqtR

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:37650:MmItLD9qj0SkgbzagCGADkgIBOhRohUi4BgEAM4NykhtggQzLABIEgBAAgUhSpAoopahBEDDwSbAWll+wByZaIM4vSNJAAuQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0000000000ffffff
Perceptual Hash:a946f14659981ebe
Difference Hash:c5cd21b105451a9b
Wavelet Hash:0000011931ffffff
Color Hash:#40bfa2

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data