CLEAN — f08224c8e43a010340d427a6d39cf02d2a727ab95721ed58290b34e955cdc692
CLEAN — f08224c8e43a010340d427a6d39cf02d2a727ab95721ed58290b34e955cdc692 is a html sample analyzed by MalwareAnalyzer by Cyble with a clean verdict (21/100). 1 of 53 detection engines flagged it.
Identification
- SHA-256:
f08224c8e43a010340d427a6d39cf02d2a727ab95721ed58290b34e955cdc692 - SHA-1:
9631d62d298c7136c4c105fe1034909e9570c521 - MD5:
4f6639518860817c78268c52a09ceac8 - ssdeep:
96:lhAyDXAyvQBEaBXehGSkUf23LIYjoCFSua8kw5t:lhPXTJLf20Y/UuaSt - TLSH:
T1BF1D40776B6E3CD024A51D1BD5A539E4D0C5E38D732A78E6EF705B481821E2020BFB19 - Submitted as: f08224c8e43a010340d427a6d39cf02d2a727ab95721ed58290b34e955cdc692
- File type: html · Size: 5882 bytes
- Verdict: clean (21/100)
Detections (1 of 53 engines)
- Kaspersky (KVRT): Trojan.JS.Redirector.afa
Why this verdict
The clean score of 21/100 is the fusion of 1 weighted signal:
- Embedded network infrastructure: http://www.russiantable.com/store/affiliate/b.asp?id=4500, http://www.russiantable.com/store/affiliate/showban.asp?id=4500&img=, http://www.russiantable.com/store/affiliate/showban2.asp?id=4500&img=167x250/russiantable_167x250_07.gif&emp_cat=Banners - static signal, weight 0.35, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded URLs
- http://www.russiantable.com/store/affiliate/b.asp?id=4500
- http://www.russiantable.com/store/affiliate/showban.asp?id=4500&img=
- http://www.russiantable.com/store/affiliate/showban2.asp?id=4500&img=167x250/russiantable_167x250_07.gif&emp_cat=Banners
- http://pagead2.googlesyndication.com/pagead/show_ads.js
- http://www.kushaem.com
Embedded domains
- kushaem.com
- www.russiantable.com
- pagead2.googlesyndication.com
- www.kushaem.com
- google-analytics.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report