alstar.uz - suspicious URL scan, 22 Aug 2026

MalwareAnalyzer by Cyble scanned alstar.uz and returned a suspicious verdict (score 28). The page resolved to 81.95.237.17 on JC LLC Sarkor-Telecom in UZ. The domain was registered 4204 days ago through ISP Sarkor Telecom. 2 domains and 1 IP were contacted, over 2 HTTP requests. 2 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 22 Aug 2026; the page may have changed since.

Scan result

Malware communicating with this URL (2)

These samples were observed contacting or being served from alstar.uz. Each links to its full analysis.

Antivirus & YARA (1 of 48 engines)

These signatures matched text in the page. Pages that quote or document malware can match them, so on their own they do not make a page malicious.

Why this verdict

Detected technologies

Contacted infrastructure

Observed indicators

Other scans of alstar.uz (1)

This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.

Questions about alstar.uz

Is alstar.uz safe?
No. MalwareAnalyzer scanned alstar.uz on 22 Aug 2026 and returned a suspicious verdict with a score of 28 out of 100. Treat it as hostile until it is re-checked.
What malware is associated with alstar.uz?
2 analysed samples communicate with this URL, including Phishing.
How was alstar.uz checked?
A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.

Scanned at the standard tier - see how URL scanning works.

Scan another URL · Latest analyzed threats · All scans of alstar.uz

Scanned on MalwareAnalyzer by Cyble · Open interactive scan