Malware Related > Zlkon.lv

hs.3-3.zlkon.lv -(94.247.3.3)

(1/1)

SysAdMini:
Rogue

--- Code: ---webwidesecurity.com/index.php?affid=09400
webwidesecurity.com/download.php?affid=00000
webwidesecurity.com/install/ws.zip
webwidesecurity.com/install/installpv.exe

--- End code ---

Malware-Web-Threats:
Another fake Antivirus


--- Code: ---hxxp://greatonlinesecurityscan.com/
hxxp://greatonlinesecurityscan.com/hitin.php
hxxp://greatonlinesecurityscan.com/download.php
hxxp://greatonlinesecurityscan.com/install/installpv.exe
hxxp://greatonlinesecurityscan.com/install/ws.zip

--- End code ---

VirusTotal for install.exe 13/40 (32.5%)
VirusTotal for installpv.exe 3/40 (7.5%)
VirusTotal for ws.exe 10/40 (25%)

VirusTotal for av.exe (ws.zip) 9/40 (22.5%)

Anubis report for install.exe

Redirect to google after infection with these links


--- Code: ---hxxp://greatonlinesecurityscan.com/in.php?url=5&affid=00000
hxxp://greatonlinesecurityscan.com/in.php?url=1&affid=00000

--- End code ---

Malware-Web-Threats:
Redirects:


--- Code: ---hxxp://theonlinesecurity.com/in.php
hxxp://theonlinesecurity.com/hitin.php

--- End code ---

Fake scanner page:


--- Code: ---hxxp://theonlinesecurity.com/index.php
hxxp://theonlinesecurity.com/scan.php

--- End code ---

Payloads:


--- Code: ---hxxp://theonlinesecurity.com/download.php
hxxp://theonlinesecurity.com/install/installpv.exe
hxxp://theonlinesecurity.com/install/ws.zip

--- End code ---

VirusTotal - 15/40 (37.5%)
VirusTotal - 10/40 (25%)
VirusTotal - 13/40 (32.5%)

Navigation

[0] Message Index

Go to full version