Malicious Activity
ey43.com
"It exhibits clear redirect cloaking behavior, where an obscure domain (ey43.com) attempts to appear benign by redirecting desktop user-agents to a legitimate site (alibaba.com), while mobile user-agents remain on the initial suspicious domain. This tactic is commonly used to evade analysis and deliver different, potentially harmful, content to specific targets."
Note: This finding is based on scans of specific URLs on the domain, not necessarily the root domain itself.
URLert analyzed recent scan activity for ey43.com and found 2 results.
| Status | Target URL | Time |
|---|---|---|
| Suspicious | https://ey43.com/afu.php | 2 weeks ago |
| Malicious | https://ey43.com/afu.php | 12/3/2025 |
Run a real-time investigation to understand the specific threats on any URL from this domain.
This assessment is based on automated analysis and may not be definitive.
Always verify independently before taking action.