top title background image
Malware  Trends
flash

Detection Sample Info Download Report Classification & Info Graph
Suspicious
rsatcustominstaller.exe
2024-04-26 22:44:38 +02:00
Info
Class
Clean
no Icon
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-appcompat-clear --field-trial-handle=2120,i,135501077680062421,12792918039034419605,262144 --variations-seed-version=20240425-050055.366000 --mojo-platform-channel-handle=2236 /prefetch:3
2024-04-26 22:33:43 +02:00
Info
Clean
no Icon
"C:\Windows\System32\rundll32.exe" SHELL32.DLL,Control_RunDLL ca400cpl.cpl,@0,1
2024-04-26 22:26:44 +02:00
Info
Clean
hv7H7u7IvS.exe
2024-04-26 22:23:09 +02:00
Info
Clean
http://191-1-1-12.user3g.veloxzone.com.br
2024-04-26 22:22:28 +02:00
No classification & info
no
Graph
Clean
Quarantined Messages (15).zip
2024-04-26 22:21:58 +02:00
No classification & info
no
Graph
Malicious
HTMLPhisher
AV: 5%
DocuSign_Payapp#5_Pay_Requests.pdf
2024-04-26 22:16:34 +02:00
Info
Class
Clean
https://my.intakt.app/
2024-04-26 22:16:04 +02:00
Info
Malicious
  • Sigma
HTMLPhisher
AV: None
phish_alert_sp2_2.0.0.0 - 2024-04-26T151509.287.eml
2024-04-26 22:15:48 +02:00
Class
no
Graph
Clean
https://www.canva.com/design/DAGClH4MUFw/rFsA-JM3jf3pyxfbKLXRWA/view?utm_content=DAGClH4MUFw&utm_campaign=designshare&utm_medium=link&utm_source=editor
2024-04-26 22:05:19 +02:00
No classification & info
no
Graph
Malicious
  • Sigma
AV: 65%
Lab5-1.docx
2024-04-26 22:04:19 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
FormBook, GuLoader
AV: 17%
CDS AC 661171855-VN1 SOA.wsf
2024-04-26 21:55:11 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
  • Snort
Remcos, DBatLoader
AV: 3%
Purchase Order is approved26042024.cmd
2024-04-26 21:55:06 +02:00
Info
Class
Clean
https://leadershipsummit.aha.org/
2024-04-26 21:53:20 +02:00
Info
Incomplete analysis
AV: None
https://navranggroup.in/sunpass/tollStep1.php
2024-04-26 21:49:13 +02:00
Info
Malicious
  • Yara
  • Snort
HTMLPhisher
AV: None
https://messageis.ru/pre/profile/message
2024-04-26 21:48:18 +02:00
Info
Class
Clean
https://clickserve.dartsearch.net/link/click?&ds_a_cid=78645631&ds_a_caid=16864403479&ds_a_agid=136213635060&ds_a_fiid=&ds_a_lid=kwd-337954311970&&ds_e_adid=592415145315&ds_e_matchtype=search&ds_e_device=c&ds_e_network=g&&ds_url_v=2&dc_eps=AHas8cAWcSu2CE2UYpbAoywAbKsEzKsO3mL4IRHbDY7Tz6XLPlOxJw498iUtYEqldt3XQQ07ptEfeYomK1W7&acs_info=ZmluYWxfdXJsOiAiaHR0cHM6Ly93d3cuc2VjdW1kLm9yZy9wZXJzb25hbC9iYW5raW5nL3RvdGFsLWNoZWNraW5nLXJld2FyZHMvIgo&ds_dest_url=https%3A%2F%2Fds5l29de4j.virtualbotz.com/dyvacwws/Ridgelineintl/cmhhcmtleUByaWRnZWxpbmVpbnRsLmNvbQ==
2024-04-26 21:39:25 +02:00
Info
Clean
https://r1.ddlnk.net/c/AQjk0g0Qm8tfGO-fuYUBIN_VnRqX_8qMMv0SH4zjIDrBfWHUoJeyNYFTWW6pKRGo9nfqZA
2024-04-26 21:36:19 +02:00
No classification & info
no
Graph
Malicious
HTMLPhisher
AV: None
https://herofargwsmnncmwsrcnmwsncmwscnm.popsy.site/
2024-04-26 21:34:19 +02:00
Info
Class
Suspicious
New Pay App#WEYI887 From Fountain City Endodontics.msg
2024-04-26 21:34:19 +02:00
Info
Class
Windows: InjectsWrites Registry keysDrops PE FilesHas more than one ProcessHas Email attachmentDisassembly is available
Android: Receives SMS Sends SMS Reboot Native CMD
Common: Generates Internet Traffic Generates HTTP Network Traffic Expired Sample Creates malicious files Contains malware configuration(s)
Customization Show ID column