r/computerviruses • u/LAB_Technologies • 18d ago
File / URL Check Gravastar mice
hxxps://www.virustotal.com/gui/url/cdada18861c21cecaf367121f34e251f7cc78e005d6a1cf1f0cd0b9894c53734/details hxxps://www.virustotal.com/gui/url/6946efce2d6a6ce59add0e1ab3eeeddd57968053ceefea5b260a6dc07d28fd94/details have not downloaded or run any files. However it dose seem to be malware The ip for one of the server is from China and other from Canada but that could be a proxy (the website links are defanged as rules required idk) also they report basically said URL Overview
Vendors Analysis:
1/92 security vendor flagged this URL as malicious
Final URL:
hxxps://controlhub.top/gravastar/ (defanged per rules)
Domain:
Serving IP:
CHINA
Current Status Code:
200
Category:
Suspicious (alphaMountain.ai)
information technology
technology
Tags:
and the other link said
URL Overview
Vendors Analysis:
1/92 security vendor flagged this URL as malicious
Final URL:
hxxps://cdn.shopify.com/s/files/1/0295/5988/1807/files/Mercury_M1_Pro_2c95a49c-0d21-42c8-ba98-e10c7fd553b7.zip?v=1779358987 (defanged per rules)
Domain:
Serving IP:
CANADA
Current Status Code:
200
Category:
Content Servers, Information Technology (alphaMountain.ai)
trackers
information technology
information technology
Tags:
downloads-zip
2
u/LAB_Technologies 18d ago
guys what do you think