SHA256: 681dd9f73db50422536b422e83d0dabfe172e9e94b483b6df5f6a09226856c37 File name: exe1.exe Detection ratio: 23 / 59   Ad-Aware Trojan.GenericKD.5015659 20170509 AegisLab Ransom.Cerber.Smjak!c 20170508 Arcabit Trojan.Generic.D4C886B 20170509 Baidu Win32.Trojan.WisdomEyes.16070401.9500.9999 20170503 BitDefender Trojan.GenericKD.5015659 20170509 CrowdStrike Falcon (ML) malicious_confidence_98% (W) 20170130 Emsisoft Trojan.GenericKD.5015659 (B) 20170508 Endgame malicious (high confidence) 20170503 F-Secure Trojan.GenericKD.5015659 20170508 GData Trojan.GenericKD.5015659 20170508 Invincea trojandownloader.win32.unruy.i 20170413 Kaspersky Trojan-Ransom.Win32.Zerber.ebdr 20170508 Malwarebytes Ransom.Cerber 20170509 McAfee Artemis!8C290A321DCB 20170509 McAfee-GW-Edition BehavesLike.Win32.Dropper.hc 20170508 eScan Trojan.GenericKD.5015659 2017-05-08 19:44:02.346328 IP 192.168.1.102.54506 > 185.23.21.18.80: Flags [P.], seq 0:420, ack 1, win 256, length 420: HTTP: GET /language/overrides/counter/exe1.exe HTTP/1.1 E…..@…V….f…….P…[.<..P…r…GET /language/overrides/counter/exe1.exe HTTP/1.1 Accept: image/jpeg, application/x-ms-application, image/gif, application/xaml+xml, image/pjpeg, application/x-ms-xbap, */* Accept-Language: en-US User-Agent: Mozilla/4.0 […]