Author Topic: Is this keylogger being flagged by avast?  (Read 703 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33925
  • malware fighter
Is this keylogger being flagged by avast?
« on: May 03, 2019, 10:45:59 PM »
Re: https://urlquery.net/report/430fa238-458e-4334-aabf-845f214e2c16
On domain: https://www.virustotal.com/nl/url/a343bdf50d84aafe13baaf3ed6f872cc209e686140c61bdcb65d288ea8d84366/analysis/
On downloaded file: https://www.virustotal.com/nl/file/eccde6e6ae8eb1c5a3f6882870c21956206494f3e2751252396ea4a8a2960b9d/analysis/1556855405/
Scanning I get an error on that server..-https://secursprx.com/downloads/spyrixemployee.exe/397.file - file too large, skipped
& >-https://secursprx.com/downloads/spyrixemployee.exe/{app}\runkey.exe - ??
Outdated Software Detected
Nginx under 1.15.6
Quttera's  misses the malware...

Seems DrWeb and other do not flag it as it is considered a legit keylogger,
but I consider all keyloggers, that I am not aware about minimal as unwanted,
so a PUP detection would be in line with this behaviour.

polonus
« Last Edit: May 04, 2019, 12:20:38 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!