top title background image
Malware  Trends
flash

Detection Sample Info Download Report Classification & Info Graph
Clean
https://google.it/amp/gruppo-relaxebanking.ffb-bk.com?id=mlk6rt0a5u35k
2024-07-03 14:51:54 +02:00
No classification & info
no
Graph
Clean
http://netorg40617-my.sharepoint.com
2024-07-03 14:51:29 +02:00
No classification & info
no
Graph
Clean
https:/sterling-prod-acumatica.s3.amazonaws.com/9189038_142739N.pdf?AWSAccessKeyId=AKIAIYFV2RUQHU32EZPQ&Expires=1730052721&Signature=Q6nX6CSG3roHKmU5gHtiFWgx1ck%3D
2024-07-03 14:50:29 +02:00
Info
Malicious
  • Yara
  • Sigma
Remcos
AV: 74%
wcNDx6MT9O.exe
2024-07-03 14:50:09 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
AgentTesla
AV: 92%
VG0x1LZCFb.exe
2024-07-03 14:50:03 +02:00
Info
Class
Malicious
  • Yara
  • Snort
FormBook, PureLog Stealer
AV: 68%
hOe2JrpIAE.exe
2024-07-03 14:49:03 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
  • Snort
Remcos
AV: 79%
cnaniAxghZ.exe
2024-07-03 14:48:08 +02:00
Info
Class
Malicious
HTMLPhisher
AV: None
https://lnkd.in/exwPeXjc
2024-07-03 14:44:06 +02:00
Info
Class
Malicious
  • Snort
HTMLPhisher
AV: None
https://www-bbc-co-uk.cdn.ampproject.org/c/s/ANToniopneus.com.br/dayo/laits/captcha/ZGUud2l0dGUuYm9ub0BkZW1lLWdyb3VwLmNvbQ==$%C3%A3%E2%82%AC%E2%80%9A
2024-07-03 14:39:25 +02:00
Class
no
Graph
Malicious
  • Yara
HTMLPhisher
AV: None
https://netorg40617-my.sharepoint.com/:o:/g/personal/negin_eeeasc_com/EkVB7FirdotMvG978qS6ihUB3Y22hA6ZH5YE34JME34-Pg?e=5%3aGZ1JUi&at=9
2024-07-03 14:39:15 +02:00
Class
no
Graph
Malicious
HTMLPhisher
AV: None
https://netorg7716231-my.sharepoint.com/:f:/g/personal/schamness_jessenmfg_com/EpvvFD967V1ApGKFME3zg84BIzVZPMLc9RCaE7D0w7YFPA?e=hGdbPg
2024-07-03 14:38:23 +02:00
Class
no
Graph
Malicious
HTMLPhisher
AV: None
https://inpzk.engineeringimportdulcimer.ink/?=vxkncwole9
2024-07-03 14:38:07 +02:00
Info
Class
Malicious
  • Yara
HTMLPhisher
AV: None
https://u6071375.ct.sendgrid.net/ls/click?upn=u001.jNebCYco-2BJgBMGJDj1kJWP39IKixFvDeSBij1PLovvXT0hkMSWjEhuIEgwQ-2F309CwGFmoY6-2Bl45VLW7K9Sd8-2Fg-3D-3Dm1D8_bgsmQmhs-2BDkrnAcljUiGIti1-2F3303-2FliL2Lyr586-2FN9rAlBFKILfRyjObk6Iz5-2FtMSxC-2FhiWOZXbqnmzeZXBiy3CSpPIYxz2-2BTcFMtFX6z-2FFKaL9cuMNNsd9H8Soth9M-2BiGwIhw5kRyphke6a8RYyV0rtdDONsX7lNk6Cr796v-2FIJZ8nzBJ39o6b-2FDySakEM-2B9nvScrgUWzDogJp7LxfPQ-3D-3D
2024-07-03 14:37:42 +02:00
Info
Class
Malicious
AV: None
https://hr.economictimes.indiatimes.com/etl.php?url=https:**Ahr.economictimes.indiatimes.com*etl.php*url=**Ayrtdtrdtyuikmmoix.pages.dev**Aemail=bWphY2tzb25AdHFsLmNvbQ==__;Ly8vPy8vIz8!!HkjQSg!xM0xOkWiB4abX6VJj84K1M3pVXJBP_GNPKTGuCBQdGUHkKmAbpL4OU1gL4uMAa_niGNzFWaU4aO2SbOw3s8pm3wmWgo$
2024-07-03 14:37:02 +02:00
Info
Suspicious
I Il certificato di firma automatica sta per scadere (1).msg
2024-07-03 14:35:04 +02:00
Info
Clean
https://selfcare.firma-remota.it/asmonitor/panel/login
2024-07-03 14:35:04 +02:00
Info
Clean
https://selfcare.firma-remota.it/asmonitor/panel/login
2024-07-03 14:35:04 +02:00
Info
Malicious
AV: None
http://www.cajamar-soporte.com
2024-07-03 14:33:56 +02:00
Info
Malicious
  • Yara
GuLoader
AV: 53%
eXiJWkp8OE.exe
2024-07-03 14:33:04 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
ScreenConnect Tool
AV: 17%
1C769A32-2CBF-4738-9013-480E0434BAEF_06182024030338389.exe
2024-07-03 14:32:16 +02:00
Info
Class
Windows: InjectsWrites Registry keysDrops PE FilesHas more than one ProcessHas Email attachmentDisassembly is available
Android: Receives SMS Sends SMS Reboot Native CMD
Common: Generates Internet Traffic Generates HTTP Network Traffic Expired Sample Creates malicious files Contains malware configuration(s)
Customization Show ID column