vmkstroi.ru - URL scan, 24 Aug 2026
MalwareAnalyzer by Cyble scanned vmkstroi.ru and returned a unknown verdict (score -12). The page resolved to 45.130.41.71 on Beget LLC in RU. 1 domain and 1 IP were contacted. 13 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 24 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score -12) · Confidence 15%
- Scanned URL:
https://vmkstroi.ru/wp-content/plugins/super-forms/uploads/php/files/c90a8f74ff56be8be62987a79c03adf8/94717518248.pdf - Domain: vmkstroi.ru · IP: 45.130.41.71 · AS198610 · RU
- Server: nginx-reuseport/1.21.1
- Page title: WordPress › Ошибка
- HTTP status: 500 · text/html; charset=utf-8
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Oct 26 13: · subject CN=vmkstroi.ru
- Scan tier: fast · observed 2026-08-24 05:57:00 UTC
Malware communicating with this URL (13)
These samples were observed contacting or being served from vmkstroi.ru. Each links to its full analysis.
- Phishing - referenced ·
8b9b6f9b90a709ccdc1a262cfc087d22· first seen 2026-08-24 - Phishing - referenced ·
d4eba78a8af2e1d5e54af43fdfba5aad· first seen 2026-08-23 - Phishing - referenced ·
3f0503aef80536ccdccc9e4a2b34a988· first seen 2026-08-23 - Phishing - referenced ·
b0ec09e11fe0a3fe10d95a84faf0b3e7· first seen 2026-08-17 - Phishing - referenced ·
1ea625afefe2717f2c6b0166a0be3b99· first seen 2026-08-17 - Phishing - referenced ·
a11abd7e592d8203898cee7eb6da3249· first seen 2026-08-17 - Phishing - referenced ·
86b6ba1358e773f1a0c0804ba5009da7· first seen 2026-08-17 - Phishing - referenced ·
530d7ff0c9c60403a115a8049533f320· first seen 2026-08-16 - Phishing - referenced ·
81b11bfe8e26d3390e2a4ff9067e8942· first seen 2026-08-15 - Phishing - referenced ·
0568101678f8d367f8632e4acc4f07e1· first seen 2026-08-15 - Phishing - referenced ·
67cb30a801147e792fe54c7efe545f78· first seen 2026-08-14 - Phishing - referenced ·
5c078356888892b7639a99f75d7ecfe3· first seen 2026-08-13 - Phishing - referenced ·
873d2342d243a6501d12834bcceeae41· first seen 2026-08-12
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Why this verdict
- Valid TLS, no impersonation or off-origin credential post
Detected technologies
- Nginx
- PHP
Contacted infrastructure
- 45.130.41.71 - AS198610 Beget LLC (Russian Federation)
Observed indicators
- vmkstroi.ru
- 45.130.41.71
- https://vmkstroi.ru/wp-content/plugins/super-forms/uploads/php/files/c90a8f74ff56be8be62987a79c03adf8/94717518248.pdf
Other scans of vmkstroi.ru (2)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 23 Aug 2026 - unknown ·
https://vmkstroi.ru/wp-content/plugins/super-forms/uploads/php/files/fd298ca5262629800d487838616217f - 17 Aug 2026 - unknown ·
https://vmkstroi.ru/wp-content/plugins/super-forms/uploads/php/files/317e4718ab02487c4cbaf338294a99c
Questions about vmkstroi.ru
- Is vmkstroi.ru safe?
- The scan of vmkstroi.ru on 24 Aug 2026 reached no verdict either way (score -12). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with vmkstroi.ru?
- 13 analysed samples communicate with this URL, including Phishing.
- How was vmkstroi.ru checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the fast tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the fast tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of vmkstroi.ru
Scanned on MalwareAnalyzer by Cyble · Open interactive scan