ww19.uktohabbarijamalta.com - URL scan, 12 Aug 2026
MalwareAnalyzer by Cyble scanned ww19.uktohabbarijamalta.com and returned a unknown verdict (score 6). The page resolved to 208.91.196.145 on Confluence Networks Inc in US. The domain was registered 188 days ago through CommuniGal Communication Ltd.. 3 domains and 2 IPs were contacted. 1 malware sample communicates with this URL (Phishing). The request followed 1 redirect before landing. This is a point-in-time observation from 12 Aug 2026; the page may have changed since.
Scan result
- Verdict: unknown (score 6) · Confidence 9%
- Scanned URL:
http://uktohabbarijamalta.com/files/file/gijaxali.pdf - Domain: ww19.uktohabbarijamalta.com · IP: 208.91.196.145 · AS40034 · US
- Server: nginx/1.28.0
- HTTP status: 200 · text/html
- Registrar: CommuniGal Communication Ltd. · domain age 188 days · created 2026-02-05
- Scan tier: standard · observed 2026-08-12 19:15:50 UTC
Redirect chain
http://uktohabbarijamalta.com/files/file/gijaxali.pdfhttp://ww19.uktohabbarijamalta.com/
Malware communicating with this URL (1)
These samples were observed contacting or being served from ww19.uktohabbarijamalta.com. Each links to its full analysis.
- Phishing - referenced ·
fa18d831a79dcb8c040cc2b672e3f1ec· first seen 2026-08-12
Antivirus & YARA (0 of 44 engines)
No engine flagged this page's content.
Why this verdict
- Served over plaintext HTTP
Detected technologies
- Nginx
Contacted infrastructure
- 208.91.196.145 - AS40034 Confluence Networks Inc (United States)
- 212.92.105.22 - AS43350 NForce Entertainment B.V. (Netherlands)
Observed indicators
- ww19.uktohabbarijamalta.com
- l.cdn-fileserver.com
- skenzo.com
- 208.91.196.145
- 212.92.105.22
- http://ww19.uktohabbarijamalta.com/
- http://ww19.uktohabbarijamalta.com/1
- https://l.cdn-fileserver.com/bping.php?mspa=0&vgd_tsce=L1319&vgd_oresf=one&hvsid=00001786562161346009225420802666&cc=AU&vgd_bid=452146&vgd_cdv=O3435&vgd_setup=c21&prid=8PR11258V&ugd=0&vgd_asn=16509&r=1786562161349&vgd_cage=33&vgd_oreqf=one&vgd_wlstp=0&cid=8CU7G8B38&crid=342704488&vi=1786562161133669651&ssld=%7B%22QQNN%22%3A%22KP%22%2C%22QQN75%22%3A%22Q5OzJ5%22%2C%22QQ8E%22%3A%22%22%2C%22QQQN%22%3A%22Ibp%22%2C%22QQl8E%22%3A%22%22%7D&vgd_rpth=%2Fola&gdpr=0&wshp=0&vgd_l2type=dmola&lf=6&sc=NSW&lper=100&wsip=170764643&requrl=https%3A%2F%2Fuktohabbarijamalta.com&vgd_len=582&vgd_end=1
- https://skenzo.com/sk-privacy.php
Other scans of ww19.uktohabbarijamalta.com (2)
This host has been scanned before. Each scan is a separate observation, so a verdict here does not carry over to the others.
- 20 Aug 2026 - unknown
- 12 Aug 2026 - unknown
Questions about ww19.uktohabbarijamalta.com
- Is ww19.uktohabbarijamalta.com safe?
- The scan of ww19.uktohabbarijamalta.com on 12 Aug 2026 reached no verdict either way (score 6). Too little was captured to judge it, which is an unknown rather than a pass.
- What malware is associated with ww19.uktohabbarijamalta.com?
- 1 analysed samples communicate with this URL, including Phishing.
- How was ww19.uktohabbarijamalta.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of ww19.uktohabbarijamalta.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan