Author Topic: Only DrWeb to detect or already taken down?  (Read 794 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33866
  • malware fighter
Only DrWeb to detect or already taken down?
« on: April 01, 2014, 01:30:37 AM »
htxp://mediaarea.net/download/binary/mediainfo-gui/0.7.67/MediaInfo_GUI_0.7.67_Windows.exe is in Dr.Web malicious sites list!

ESET-NOD32    Win32/InstallMonetizer.AN -> https://www.virustotal.com/nl/file/50dd849acff3ce3de8a4b5d2bb70143280dc97e91459f92c8e006872b676f6c2/analysis/1394625030/
Not found:
http://zulu.zscaler.com/submission/show/d4dd06b94c1edbda2817e449f569dd4e-1396309773
Code: [Select]
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">
<html><head>
<title>404 Not Found</title>
</head><body>
<h1>Not Found</h1>
<p>The requested URL /download/binary/mediainfo-gui/0.7.67/me was not found on this server.</p>
<hr>
<address>Apache/2.2.22 (@RELEASE@) Server at 127.0.0.1 Port 80</address>
</body></html>

See: https://www.virustotal.com/nl/url/18b91135337e599a1d122e8527297f6bcb3d50454681f5fc5d255ba6aefcdd71/analysis/1396308325/
see: http://app.webinspector.com/public/reports/21023362
Malware history of IP: https://www.virustotal.com/nl/ip-address/144.76.199.138/information/
Re: https://www.virustotal.com/nl/file/5272d9c7d95b5fbba5253bee633ba69f3644ce0a6d10c9b7de5040f9dbabaa89/analysis/1392834706/

polonus
« Last Edit: April 01, 2014, 01:53:33 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!