SHA256: 654295d26a5f030914a5342624d44358e822b9bfbabd188b602c506724d6e4f6 File name: hhbqxgq.exe Detection ratio: 51 / 55 Analysis date: 2016-10-28 01:17:33 UTC ( 0 minutes ago ) ALYac Win32.Ramnit 20161028 AVG Agent_r.AJA 20161028 AVware Trojan.Win32.Generic!BT 20161027 Ad-Aware Win32.Ramnit 20161028 AegisLab W32.Nimnul.a!c 20161027 AhnLab-V3 Win32/Ramnit.B 20161027 Antiy-AVL Virus/Win32.Nimnul.a 20161027 Arcabit Win32.Ramnit 20161028 Avast Win32:RmnDrp 20161027 Avira (no cloud) W32/Ramnit.A 20161027 Baidu Win32.Virus.Nimnul.a 20161027 BitDefender Win32.Ramnit 20161028 Bkav W32.RammitNNA.PE 20161027 CAT-QuickHeal W32.Ramnit.A 20161027 ClamAV Win.Trojan.Ramnit-1847 20161027 Comodo Virus.Win32.Ramnit.A 20161028 CrowdStrike Falcon (ML) malicious_confidence_100% (W) 20161024 2016-10-27 19:54:31.458114 IP 192.168.1.102.55840 > 175.6.5.125.80: Flags [P.], seq 0:289, ack 1, win 256, length 289: HTTP: GET /hhbqxgq.exe HTTP/1.1 E..Im.@…. …f…}. .P…     E       […]