beysukonaklari.com - URL scan, 12 Aug 2026
MalwareAnalyzer by Cyble scanned beysukonaklari.com and returned a unknown verdict (score 12). The page resolved to 94.73.151.51 on CIZGI-MNT in TR. The domain was registered 302 days ago through Nics Telekomunikasyon A.S.. 7 domains and 1 IP were contacted, over 23 HTTP requests. 2 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 12 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 12) · Confidence 15%
- Scanned URL:
https://beysukonaklari.com/ckfinder/userfiles/files/ruxufewepososoritupis.pdf - Domain: beysukonaklari.com · IP: 94.73.151.51 · AS34619 · TR
- Server: LiteSpeed
- Page title: Sayfa bulunamadı – Beysu Konakları
- HTTP status: 404 · text/html; charset=UTF-8
- Registrar: Nics Telekomunikasyon A.S. · domain age 302 days · created 2025-10-13
- HTTP requests captured: 23
- Scan tier: fast · observed 2026-08-12 05:08:45 UTC
Malware communicating with this URL (2)
These samples were observed contacting or being served from beysukonaklari.com. Each links to its full analysis.
- Phishing - referenced ·
b6e0d22638007f88ac4f5d3da5e58ec1· first seen 2026-08-12 - Phishing - referenced ·
788f09322e119caf07d575c0fe030487· first seen 2026-08-11
Antivirus & YARA (1 of 46 engines)
- YARA: delivr.to detections [yara]: DLV_HTML_Smuggling (page content)
These signatures matched text in the page. Pages that quote or document malware can match them, so on their own they do not make a page malicious.
Why this verdict
- A signature matched text in the page (DLV_HTML_Smuggling) — pages that discuss malware can match, so this alone is not a malicious verdict
Detected technologies
- LiteSpeed
- PHP
- WordPress
- jQuery
Contacted infrastructure
- 94.73.151.51 - AS34619 CIZGI-MNT (TR)
Observed indicators
- beysukonaklari.com
- fonts.googleapis.com
- facebook.com
- twitter.com
- instagram.com
- wa.me
- www.instagram.com
- 94.73.151.51
- https://beysukonaklari.com/ckfinder/userfiles/files/ruxufewepososoritupis.pdf
- https://beysukonaklari.com/feed/
- https://beysukonaklari.com/comments/feed/
- https://beysukonaklari.com/wp-includes/css/dist/block-library/style.min.css?ver=7.0.3
- https://beysukonaklari.com/wp-content/plugins/contact-form-7/includes/css/styles.css?ver=6.1.6
- https://beysukonaklari.com/wp-content/plugins/user-registration/assets/css/user-registration.css?ver=5.2.1
- https://beysukonaklari.com/wp-content/plugins/woocommerce/assets/css/woocommerce-layout.css?ver=10.8.1
- https://beysukonaklari.com/wp-content/plugins/woocommerce/assets/css/woocommerce-smallscreen.css?ver=10.8.1
- https://beysukonaklari.com/wp-content/plugins/woocommerce/assets/css/woocommerce.css?ver=10.8.1
- https://beysukonaklari.com/wp-content/fonts/69baba8b8bc05b67a6ea35c0419bbe99.css?ver=2.1.6
- https://beysukonaklari.com/wp-content/themes/inspiro/assets/css/minified/style.min.css?ver=2.1.6
- https://beysukonaklari.com/wp-content/plugins/elementor/assets/lib/animations/styles/fadeIn.min.css?ver=4.1.3
Other scans of beysukonaklari.com (5)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
https://beysukonaklari.com/ckfinder/userfiles/files/31316197427.pdf - 23 Aug 2026 - unknown ·
https://beysukonaklari.com/ckfinder/userfiles/files/31316197427.pdf - 15 Aug 2026 - unknown ·
https://beysukonaklari.com/ckfinder/userfiles/files/39449013870.pdf - 14 Aug 2026 - unknown ·
https://beysukonaklari.com/ckfinder/userfiles/files/jofibuvusime.pdf - 5 Aug 2026 - unknown ·
https://beysukonaklari.com/ckfinder/userfiles/files/23713720454.pdf
Questions about beysukonaklari.com
- Is beysukonaklari.com safe?
- The scan of beysukonaklari.com on 12 Aug 2026 reached no verdict either way (score 12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with beysukonaklari.com?
- 2 analysed samples communicate with this URL, including Phishing.
- How was beysukonaklari.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of beysukonaklari.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan