site-1039299.mozfiles.com - URL scan, 15 Aug 2026
MalwareAnalyzer by Cyble scanned site-1039299.mozfiles.com and returned a unknown verdict (score 0). The page resolved to 65.8.180.81 on Amazon.com, Inc. in US. The domain was registered 4439 days ago through Key-Systems GmbH. 1 domain and 1 IP were contacted. 26 malware samples communicate with this URL (SBadur). This is a point-in-time observation from 15 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 0) · Confidence 0%
- Scanned URL:
https://site-1039299.mozfiles.com/files/1039299/33704385029.pdf - Domain: site-1039299.mozfiles.com · IP: 65.8.180.81 · AS16509 · US
- Server: AmazonS3
- HTTP status: 404 · application/xml
- Registrar: Key-Systems GmbH · domain age 4439 days · created 2014-06-19
- Scan tier: fast · observed 2026-08-15 13:55:36 UTC
Malware communicating with this URL (26)
These samples were observed contacting or being served from site-1039299.mozfiles.com. Each links to its full analysis.
- 3106b2b.pdf - referenced ·
79f8b97f97afd8e6c7fe47b9dfbee017· first seen 2026-08-15 - 89704484859.pdf - referenced ·
036aa1d454e3f6fdc3ff2986e5ef1efe· first seen 2026-08-15 - 1e5f44f77b.pdf - referenced ·
4ea25334fbc4bc1208afef018ede4a07· first seen 2026-08-12 - SBadur - referenced ·
c3264a85539b0b31ba100eef274767b2· first seen 2026-08-12 - 2996dd84c4.pdf - referenced ·
4a13e6d6e9c0102a12f97e3c49fec933· first seen 2026-08-14 - womenukevi-wutenuzojab-nolaloju.pdf - referenced ·
ba7c3efda27ae271a6218d8ae8b775d3· first seen 2026-08-14 - 6520032.pdf - referenced ·
45d4df4c422a34da9a554349cbca0077· first seen 2026-08-14 - normal_5f86fb2de40b5.pdf - referenced ·
2cbfdb8726a56d02bf0e7a463baed75d· first seen 2026-08-13 - setozaxozifirofan.pdf - referenced ·
35bd1af95d30b07f64fe060d0e1e8e8e· first seen 2026-08-14 - bomunosawukub.pdf - referenced ·
f1110542ee1ac1ebdb6796f5fb5fd58f· first seen 2026-08-12 - pupapefujeg.pdf - referenced ·
3f91fa44b99a1598547e40a2a285bdc0· first seen 2026-08-12 - 06cb80c508c2ea.pdf - referenced ·
92305a4501aca1ec0d6d2a25b263de4c· first seen 2026-08-13 - 596278.pdf - referenced ·
703dc29233dddb1225fb24f2a0df0847· first seen 2026-08-12 - fomogegomotimas.pdf - referenced ·
89758becbc5ce795046c4e85436220d3· first seen 2026-08-12 - ad9d4.pdf - referenced ·
9116a1be90029a89d3a03f7b2d2b4b45· first seen 2026-08-12
Antivirus & YARA (0 of 44 engines)
No engine flagged this page's content.
Detected technologies
- Amazon CloudFront
Contacted infrastructure
- 65.8.180.81 - AS16509 Amazon.com, Inc. (United States)
Observed indicators
- site-1039299.mozfiles.com
- 65.8.180.81
- https://site-1039299.mozfiles.com/files/1039299/33704385029.pdf
Other scans of site-1039299.mozfiles.com (10)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 19 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/95283166028.pdf - 19 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/17497644015.pdf - 19 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/78666902477.pdf - 19 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/78666902477.pdf - 16 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/39793490050.pdf - 16 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/39793490050.pdf - 16 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/pubovajevurebenagivexi.pdf - 15 Aug 2026 - unknown
- 15 Aug 2026 - unknown
- 14 Aug 2026 - unknown ·
https://site-1039299.mozfiles.com/files/1039299/92722178470.pdf
Questions about site-1039299.mozfiles.com
- Is site-1039299.mozfiles.com safe?
- The scan of site-1039299.mozfiles.com on 15 Aug 2026 reached no verdict either way (score 0). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with site-1039299.mozfiles.com?
- 26 analysed samples communicate with this URL, including SBadur.
- How was site-1039299.mozfiles.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of site-1039299.mozfiles.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan