xn--h49al71atridzo.com - malicious URL scan, 23 Aug 2026

MalwareAnalyzer by Cyble scanned xn--h49al71atridzo.com and returned a malicious verdict (score 90), categorised as phishing. The page resolved to 211.202.2.123 on SK Broadband Co Ltd in KR. The domain was registered 4685 days ago through Tucows Domains Inc.. 1 domain and 1 IP were contacted. 3 malware samples communicate with this URL (Phishing). This is a point-in-time observation from 23 Aug 2026; the page may have changed since.

Scan result

Malware communicating with this URL (3)

These samples were observed contacting or being served from xn--h49al71atridzo.com. Each links to its full analysis.

Antivirus & YARA (1 of 48 engines)

Categories

Why this verdict

Detected technologies

Contacted infrastructure

Files served by this page

Observed indicators

Questions about xn--h49al71atridzo.com

Is xn--h49al71atridzo.com safe?
No. MalwareAnalyzer scanned xn--h49al71atridzo.com on 23 Aug 2026 and returned a malicious verdict with a score of 90 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
What malware is associated with xn--h49al71atridzo.com?
3 analysed samples communicate with this URL, including Phishing.
How was xn--h49al71atridzo.com checked?
A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.

Scanned at the standard tier - see how URL scanning works.

Scan another URL · Latest analyzed threats · All scans of xn--h49al71atridzo.com

Scanned on MalwareAnalyzer by Cyble · Open interactive scan