Virus-Total URL Scan vs SHA-256 Analysis?

Çağlar Arlı      -    28 Views

My antivirus detected some malware in my browser cache while just browsing a webpage. The file was quarantined and I deleted it, however it looked like JavaScript.

As I had deleted the file and had nothing to upload, I decided to put the URL through Virus-Total instead. 4 vendors indicated it was malicious and had malware.


There is also an option to scan/analyse the URLs SHA-256 hash and this indicated 23 vendors were seeing trojans and JavaScript injections.


Why are the results so different? Isn’t the SHA-256 just a hash of the URL name? Shouldn’t it match the original URL scan results?

Any insight would be appreciated thanks.