This company has verified ownership of the profile and can respond to reviews.
Trusted but Verify
Current checks lean positive for this site, supported by no major malware/phishing detections and a domain age of 6.9 years, though a basic verification step is still sensible.
Trust signal radarNormalized trust signals for geopolitica.siteDomain Maturity: 2532 daysDomain MaturityWarning Cleanliness: 0 detectionsWarningCleanlinessSafety Level: 0 negative tagsSafetyLevelPositive Signals: 2 positive signalsPositiveSignalsPopularity: Estimated low traffic without Tranco or social profile dataPopularityTrust Zone: .siteTrust ZoneOperational Signals: 1 detected servicesOperationalSignalsLocation Credibility: Hosting country CHLocation Credibility
Figure 1. Trust signal radar for geopolitica.site. Larger shaded area indicates stronger trust signals.
How we scored geopolitica.site
Tech signals:
Wordpress Platform, SEO Optimization
Positive signals:
no major malware/phishing detections
a long-term domain history (6.9 years)
the domain owner has claimed this profile
an active SSL certificate (3 months)
Last checked September 21, 2026 at 10:32 AM by
Gridinsoft Trust Model v2.5.4
Share this report?
Independent Gridinsoft analysis
What Gridinsoft observed on Geopolitica.site
A Gridinsoft threat analyst reviewed the site directly and documented the evidence behind this decision.
Current review
Review ID
GMA-20260826200311-12e36621
Reviewed
by Gridinsoft Threat Analyst
Analyst finding
Safe
Evidence basis
First-party site analysisExternal vendor intelligence: Contradictory context โ not used for this decision
The independent current review supports Safe for geopolitica.site. The claimed historical compromise is plausible and partly corroborated: public urlscan records show the reported destination receiving traffic from multiple unrelated compromised-looking sites during the same August period. That is materially different from a simple blacklist category, but the accessible records do not contain an exact geopolitica.site redirect or the supplied PHP samples. The current deployment is different. Four request profiles reached the expected editorial homepage, www canonicalized to the same root, all six named incident paths returned ordinary 404 responses, representative sitemap pages showed the expected publication, and a fresh Gridinsoft rescan recorded no current positive behavior signal. The remaining CyRadar label is contradictory domain-reputation context and does not identify a current harmful object. Safe describes the current reviewed public deployment and does not deny the plausible historical compromise.
Analyst findings
Info4
Info01
Current harmful behavior was not reproduced
Repeated request profiles, the apex and www paths, six named incident files, representative sitemap pages, and the fresh Gridinsoft rescan served the expected editorial site or ordinary 404/403 responses. No current unrelated redirect, automatic download, credential-theft flow, malware file, payload, or exact harmful URL was observed.
Info02
Historical redirect infrastructure was corroborated, but the exact sample was not public
Public urlscan records show the claimed destination receiving redirects from several unrelated sites during the reported incident period. That is concrete infrastructure context, but the accessible records do not show geopolitica.site making that redirect and no submitted sample bytes were available for independent execution or code review.
Info03
Remaining blacklist labels do not identify a current harmful object
The current adverse external context is a domain-level CyRadar phishing label, while older screenshots and reputation pages preserve more historical warnings. None of the reviewed current records supplied a reachable geopolitica.site malicious URL, redirect destination, downloaded file, payload, or hash. These labels preserve reputation context but do not demonstrate continuation of the reported redirect compromise.
Info04
The prior broad category conflicted with current first-party evidence
The current Gridinsoft-owned review did not reproduce the reported harmful flow and found no current positive behavior signal. Retaining a broad Suspicious Website classification from a single current external blacklist label would conflate a plausible past compromise with the remediated public deployment reviewed now.
Review 7 documented observations
View evidence
01HTTP response
Direct HTTP upgraded once to the canonical HTTPS root, the www host redirected once to the same root, and Windows desktop, Android mobile, Bing crawler, and command-line request profiles each finished at https://geopolitica.site/ with HTTP 200. The reviewed responses served the expected Spanish-language geopolitics publication and did not redirect to an unrelated host or start an automatic download.
Page elementTitle: INICIO - Web especializada en GEOPOLรTICA
Analyst observationThe canonical root response was identical through direct HTTPS, the HTTP upgrade, and the www redirect.
02HTTP response
Each publicly testable path named in the incident reportโ_r.php, wplog.php, wplogbak.php, license.php, license_body.php, and ist-dest.txtโreturned the site's ordinary HTTP 404 page. A request for .htaccess returned HTTP 403. None served the reported redirect configuration, the IST-HOME-GATE-V7 marker, the claimed redirect domains, PHP source, or a downloadable payload.
HTTP status404
Final URLhttps://geopolitica.site/_r.php
Final URLhttps://geopolitica.site/wplog.php
Final URLhttps://geopolitica.site/wplogbak.php
Final URLhttps://geopolitica.site/license.php
Final URLhttps://geopolitica.site/license_body.php
Final URLhttps://geopolitica.site/ist-dest.txt
Analyst observationAll six named public paths returned HTTP 404; the protected .htaccess path returned HTTP 403.
03Navigation
The current sitemap exposed post and page maps for a conventional editorial WordPress site. The homepage, representative long-form articles, the Geopolitica actual and Pensamiento geopolitico sections, and the privacy page each returned HTTP 200 at the expected same-origin URL. No sampled page contained the reported redirect markers, claimed incident domains, password field, unrelated iframe, executable or archive download reference, or automatic off-domain navigation.
HTTP status200
Final URLhttps://geopolitica.site/la-situacion-en-ucrania-un-analisis-geopolitico/
Final URLhttps://geopolitica.site/origenes-de-la-geopolitica/
Final URLhttps://geopolitica.site/geopolitica-actual/
Final URLhttps://geopolitica.site/pensamiento-geopolitico/
Final URLhttps://geopolitica.site/politica-de-privacidad/
Analyst observationThe reviewed public forms were site search and an Infomaniak newsletter subscription; no sampled public page requested a password or payment details.
04DNS
The apex and www names resolved to 185.125.27.101. Certificate Transparency exposed only geopolitica.site and www.geopolitica.site, and the presented Let's Encrypt certificate covered both names. No mail, ftp, api, or dev host resolved in the bounded DNS check. The exact appealed host is already the registrable parent domain; www is its canonical alias rather than a separate tenant or delegated user-content service.
DNS factgeopolitica.site A 185.125.27.101
DNS factwww.geopolitica.site A 185.125.27.101
Certificate factCertificate SAN covered geopolitica.site and www.geopolitica.site; validity 2026-07-27 through 2026-10-25.
Public artifact URLhttps://api.certspotter.com/
05Content
A fresh supported Gridinsoft rescan reached the expected publication title and recorded no current positive behavior signal. Before correction, the retained broad Suspicious Website category identified no current exact malicious geopolitica.site URL, redirect destination, downloaded file, payload, or hash; its current external context contained one CyRadar phishing blacklist label.
Page elementTitle: INICIO - Web especializada en GEOPOLรTICA
Analyst observationThe fresh first-party report contained an empty current positive-signal list.
Analyst observationThe retained broad category did not identify a current exact harmful URL, redirect destination, file, payload, or hash.
06Historical content
Public OSINT separated the alleged historical compromise from current domain reputation. urlscan indexed 29 geopolitica.site records from July 2025 through July 2026, but no post-incident exact-host record or reachable malicious geopolitica.site object. AlienVault OTX returned zero pulses and 36 ordinary exact-domain URLs. Wayback preserved 61 distinct apex pages from August 2020 through May 2026 but no incident-window capture. Search and sandbox indexes exposed no exact sample for the three supplied SHA-256 values.
Public artifact URLhttps://urlscan.io/domain/geopolitica.site
Public artifact URLhttps://otx.alienvault.com/indicator/domain/geopolitica.site
Public artifact URLhttps://web.archive.org/web/20260510170546id_/https://geopolitica.site/
Analyst observationThe reviewed public indexes did not expose a post-remediation harmful URL, a malware sample linked to the exact host, or a public report for any supplied SHA-256.
Analyst observationPublic MalwareBazaar and URLhaus payload lookups required authentication, so their absence from general search was recorded as unverified rather than clean.
07Historical content
The claimed historical destination is not merely a category label: urlscan indexed nine records in which several unrelated starting sites finished on istanbullady.xyz between 14 and 22 August 2026. This corroborates the destination's use in a multi-site redirect campaign during the reported period. The accessible records did not contain geopolitica.site itself, so they support the infrastructure claim but do not independently prove that this exact host delivered the redirect or any of the supplied PHP samples.
Public artifact URLhttps://urlscan.io/result/01a029e1-1be4-7289-877d-0e157875f867/
Public artifact URLhttps://urlscan.io/result/01a01d8a-548a-7658-b67a-34e7b6a7faf7/
Public artifact URLhttps://urlscan.io/result/01a00f76-da0f-778b-bc8d-3514648c1d65/
Analyst observationThe records began at unrelated sites and ended at istanbullady.xyz, consistent with shared compromise redirect infrastructure rather than a geopolitica.site domain-category inference.
Scope and limitations
The review covered the apex, canonical www alias, four request profiles, six named incident paths, representative sitemap pages, current DNS and TLS, a fresh Gridinsoft rescan, and the recorded public OSINT sources at the review time.
No actual PHP sample bytes were supplied for execution or code review. The three SHA-256 values and claimed server paths could not be independently tied to geopolitica.site through public indexes, so they were treated as reported historical indicators rather than verified current objects.
The review did not access the private server filesystem, hosting control panel, WordPress administrator, database, backups, logs, scheduled tasks, deployment pipeline, or endpoint telemetry; it therefore did not independently audit internal remediation or persistence.
The sitemap sample did not fetch every published article or media file. The reviewed site is an operator-controlled editorial publication rather than a user-content, file-hosting, redirect, or multi-tenant namespace.
Public search, URL-scan, sandbox, threat-intelligence, and archive indexes are incomplete. Authentication-protected MalwareBazaar, URLhaus, and detailed urlscan records were recorded as unavailable, not clean.
Conditional, geographic, referrer-based, or time-limited behavior may not appear in a bounded review even though desktop, mobile, crawler, and direct request profiles were compared.
Safe describes the current observed public deployment and does not guarantee future behavior, private server integrity, or immunity from another compromise.
This domain was registered October 16, 2019 at 7:12 PM through the company Infomaniak Network SA
WHOIS registrant details are private. Separately, the business has verified control of its Gridinsoft profile.
We reviewed geopolitica.site and found mostly positive signals. Current checks lean toward a legitimate, lower-risk profile, although a few caution points still keep it short of a fully verified standing. The current trust score is 79/100. Key signals include no major malware/phishing detections and a domain age of 6.9 years. Verify key details before sharing personal information or relying on the site for important actions.
FAQ
Is geopolitica.site safe?
Based on current analysis, geopolitica.site appears to be generally safe. The final verdict also reflects manual expert review. Basic verification is still reasonable before relying on the site.
Why does geopolitica.site look trustworthy?
Key factors include registrar information (Infomaniak Network SA) and hosting in CH. Major malware and phishing engines did not report active blacklist detections at the time of review. The trust score blends security detections, domain and infrastructure signals, and on-page behavior patterns. Taken together, these factors support a mostly positive trust assessment, although routine verification is still reasonable.
Geopolitica Digital Footprints
A structured view of the site's detected themes, page signals, and related online footprint elements.
Wordpress Platform
Our analyzer determines that this website is using WordPress CMS. WordPress is the most popular content management system, powering over 43% of websites globally.
Google Tag Manager
This website uses Google Tag Manager to add and update tracking tags on its website.
SEO Optimization
The geopolitica.site website employs search engine optimization (SEO) techniques to improve its visibility and ranking in search engine results pages (SERPs).
jQuery Library
Established Domain
This site has maintained active domain presence over time, indicating operational continuity.
Claimed Company Profile
The company behind this site has claimed its profile in the Gridinsoft portal and provided verified ownership details.
Domain Information
CreatedOctober 16, 2019 at 7:12 PMUpdated: September 15, 2026 at 6:21 AM ยท Expires: October 16, 2027 at 11:59 PM
Detection SignaturesThese signatures are used to generate the security fingerprint below.
Wordpress PlatformSEO OptimizationjQuery Library
Verified ServicesThis domain has been verified by the following legitimate services and organizations, confirming authentic ownership and proper email security configuration.
Google Verification
Domain ownership verified by Google.
Security FingerprintUnique identifier based on site analysis
If you own Geopolitica.site and want to challenge the trust score, please submit a review request via portal.gridinsoft.com. There you can claim your profile and add verified company/contact details. If you cannot access the portal, email legal(at)gridinsoft.com with proof of legitimacy and contact details. We never charge website owners for reviews or reconsideration requests. For more information, please review our Disclaimer.
Reviews for Geopolitica
RA
Russian Agit-prot of Pce.es (org)
1 day ago
Cryptoscam (satble-difusion) channel of peripaseos.wordpress.com
E@
El @ciruela_negra con Peluca IA
Mar 27, 2026
Bad bad seo attacks.Malicious exe. Google spain tagging team. Tracking Abuse. Virus el cabrero aka nodens.com
Reply from Geopolitica
Aug 26, 2026
Thank you for reporting this. The website subsequently underwent a full security remediation. The compromised installation was removed and rebuilt from a known-good backup, credentials were rotated, all components were updated, and current scans by both the hosting provider and Wordfence report no threats. Google Search Console also reports no security issues. If you observed a specific malicious URL or behavior at the time, any additional details would be useful for our records.
A website report warns you. A PC scan protects you.
Unsafe sites can leave adware, unwanted apps, or hidden malware in downloads and browser settings. Run Gridinsoft Anti-Malware to check what may already be on this Windows PC.
Checks active threats, startup items, and suspicious downloads
Finds adware and unwanted apps linked to unsafe websites
Shows scan results before you decide what to remove
Your comment is currently undergoing moderation and will be published shortly.
Help protect others by sharing this page on social media! The more people who know about geopolitica.site, the fewer chances they have to deceive someone else.Help others evaluate geopolitica.site by sharing this page on social media!