CLEAN — a78f742edf943a0e77e9cd150c3106392a44314f3cfb7b3fe74cade64a2583a8
CLEAN — a78f742edf943a0e77e9cd150c3106392a44314f3cfb7b3fe74cade64a2583a8 is a html sample analyzed by MalwareAnalyzer by Cyble with a clean verdict (21/100). 1 of 50 detection engines flagged it.
Identification
- SHA-256:
a78f742edf943a0e77e9cd150c3106392a44314f3cfb7b3fe74cade64a2583a8 - SHA-1:
949650cd4c5a26eb2b407a04d20b01668b0ba501 - MD5:
c7b710f86d06e5c31d09f92440c8b8a5 - ssdeep:
96:lhAyDXAyvQEwgwlBXehGSkUf23LIYjoCFSua8kw5t:lhPXTLNRLf20Y/UuaSt - TLSH:
T14A1D92376B2E3CD028B51D1BD5A539D4D085E38D732A7DA6EF715B482821E2020BFB19 - Submitted as: a78f742edf943a0e77e9cd150c3106392a44314f3cfb7b3fe74cade64a2583a8
- File type: html · Size: 6092 bytes
- Verdict: clean (21/100)
Detections (1 of 50 engines)
- Kaspersky (KVRT): Trojan.JS.Redirector.afa
Why this verdict
The clean score of 21/100 is the fusion of 1 weighted signal:
- Embedded network infrastructure: http://www.russiantable.com/store/affiliate/b.asp?id=4500, http://www.russiantable.com/store/affiliate/showban.asp?id=4500&img=, http://www.russiantable.com/store/affiliate/showban2.asp?id=4500&img=167x250/russiantable_167x250_07.gif&emp_cat=Banners - static signal, weight 0.35, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded URLs
- http://www.russiantable.com/store/affiliate/b.asp?id=4500
- http://www.russiantable.com/store/affiliate/showban.asp?id=4500&img=
- http://www.russiantable.com/store/affiliate/showban2.asp?id=4500&img=167x250/russiantable_167x250_07.gif&emp_cat=Banners
- http://pagead2.googlesyndication.com/pagead/show_ads.js
- http://www.kushaem.com
Embedded domains
- kushaem.com
- www.russiantable.com
- pagead2.googlesyndication.com
- www.kushaem.com
- google-analytics.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report