I submitted the URL earlier and I received an email, I just replied to the email and attached the zip file (I zipped it again with the password infected).The plot thickens more and more…
I submitted the URL earlier and I received an email, I just replied to the email and attached the zip file (I zipped it again with the password infected).The plot thickens more and more…
When was fresh (hours ago), even the mighty K did not detect, not to mention the nice G safe browsing.Sadly missed all the drama as NextDNS blocks it right away as of noon PST
View attachment 293479
Was flagged 8 hours earlier?
Dunno, no mood to read all the topics back hahaWas flagged 8 hours earlier?
Late to the party; I doubt was detected by NordVPN at this point of time; otherwise, it is better than K, ESET, and McAfee.Dunno, no mood to read all the topics back haha
You judged it is better because of one sample?Late to the party; I doubt was detected by NordVPN at this point of time; otherwise, it is better than K, ESET, and McAfee.
No; just mocking.You judged it is better because of one sample?
Expected; what matters which one detected it earlier.Now it is flagged by G Safe Browsing
Edit
Kaspersky and Fortinet now detect it as well.
It was already dead when @harlan4096 posted the screenshot of the link lead to by the "update" button.
No it was not dead. How did I manage to download the fake installer? I downloaded it after harlan's test.It was already dead when @harlan4096 posted the screenshot of the link lead to by the "update" button.
But I am not sure it was dead when I first posted hours before the screenshot; I did not try to click.
My Christmas Wizz list..... For VT to have timestamps of which AV detected it first,mid and last.Expected; what matters which one detected it earlier.
and to avoid, no need for sophisticated security software, just the way of thinking and logic.Personally I do not see this as a real threat. What are the chances to visit such a link? And as we can see it does not live for so long. It died after hours.
I think VT is intentionally missing the timestamp; no need for conflicts with the supporting vendors.My Christmas Wizz list..... For VT to have timestamps of which AV detected it first,mid and last.
That will show who are the contenders and pretenders
But let's be real, sometimes one can unconsciously and unintentionally fall for it.and to avoid, no need for sophisticated security software, just the way of thinking and logic.