Author Topic: Samples missed by avast (VirusTotal links only!)  (Read 373095 times)

0 Members and 1 Guest are viewing this topic.

razoreqx

  • Guest

razoreqx

  • Guest
Re: Samples missed by avast (VirusTotal links only!)
« Reply #616 on: January 19, 2012, 08:36:51 PM »
submitted.

#rogue.Fake.HDD

https://www.virustotal.com/file/96f825b5810eb220ae7fb6e2a148261b009ab564f507ca57ede7db4562acc937/analysis/1327001583/

new Fake.HDD fast flux campaign. 
livofotaltv.com
onelenolecubs.com
wautilber.com
withijs.com

RGX:
GET /britx/a HTTP1.1
« Last Edit: January 19, 2012, 08:56:15 PM by razoreqx »



Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33519
  • malware fighter
« Last Edit: January 29, 2012, 12:35:12 AM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!


Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33519
  • malware fighter
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!




Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33519
  • malware fighter
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!




Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33519
  • malware fighter
Re: Samples missed by avast (VirusTotal links only!)
« Reply #629 on: February 14, 2012, 06:21:37 PM »
Non detected HTML/Agent.NP, see: hxtps://www.virustotal.com/file/a72d07ac7c8e6a07dc0f0f0c4cb8c24136da5acea1e5dc3e3c6aff9d095fb661/analysis/
see: hxtp://vscan.urlvoid.com/analysis/f382fe3d08efcce6cd54e56071cac771/Y256ejYtaHRtbA==/

reported to virus AT avast dot com,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!