SHA256: 7dd82320953cc4257259ec4bba37ee6485493d49ac35428918ea4a0d36988cd9 File name: 63b873380be779512d2ff1acdc2cc063.dat Detection ratio: 40 / 55 Analysis date: 2017-01-16 07:28:17 UTC ( 0 minutes ago ) AegisLab Troj.Ransom.W32.Zerber!c 20170116 AhnLab-V3 Trojan/Win32.Cerber.R191828 20170116 Arcabit Trojan.Generic.D3B3C08 20170116 Avast Win32:Trojan-gen 20170116 Avira (no cloud) TR/Crypt.Xpack.ptihk 20170116 BitDefender Trojan.GenericKD.3881992 20170116 Bkav HW32.Packed.D860 20170114 CAT-QuickHeal Ransom.Cerber.B 20170116 CrowdStrike Falcon (ML) malicious_confidence_82% (W) 20161024 Cyren W32/Trojan.TLPW-4766 20170116 DrWeb Trojan.Encoder.7233 20170116 ESET-NOD32 NSIS/Injector.MM 20170116 Emsisoft Trojan-Ransom.Cerber (A) 20170116 2017-01-15 23:24:56.595989 IP 192.168.1.102.62740 > 192.36.27.5.80: Flags [P.], seq 0:331, ack 1, win 256, length 331: HTTP: GET /upload/63b873380be779512d2ff1acdc2cc063.dat HTTP/1.1 E..sf.@….6…f.$…..P…..#~rP…….GET /upload/63b873380be779512d2ff1acdc2cc063.dat HTTP/1.1 Accept: application/x-shockwave-flash, image/gif, image/jpeg, image/pjpeg, */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE […]