thibangoto.com - malicious URL scan, 20 Aug 2026

MalwareAnalyzer by Cyble scanned thibangoto.com and returned a malicious verdict (score 62). The page resolved to 103.35.65.232 on FPT Telecom in VN. The domain was registered 2024 days ago through PDR Ltd. d/b/a PublicDomainRegistry.com. 1 domain and 1 IP were contacted. 1 malware sample communicates with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 20 Aug 2026; the page may have changed since.

Scan result

Redirect chain

  1. http://thibangoto.com/app/webroot/uploads/files/wagefuvoj.pdf
  2. https://thibangoto.com/app/webroot/uploads/files/wagefuvoj.pdf

Malware communicating with this URL (1)

These samples were observed contacting or being served from thibangoto.com. Each links to its full analysis.

Antivirus & YARA (1 of 47 engines)

Why this verdict

Detected technologies

Contacted infrastructure

Files served by this page

Observed indicators

Questions about thibangoto.com

Is thibangoto.com safe?
No. MalwareAnalyzer scanned thibangoto.com on 20 Aug 2026 and returned a malicious verdict with a score of 62 out of 100. Treat it as hostile until it is re-checked.
What malware is associated with thibangoto.com?
1 analysed samples communicate with this URL, including Phishing.
How was thibangoto.com checked?
A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.

Scanned at the fast tier - see how URL scanning works.

Scan another URL · Latest analyzed threats · All scans of thibangoto.com

Scanned on MalwareAnalyzer by Cyble · Open interactive scan