SHA256: 0774ee18a57ee8a20d7f355f23a6b7f049dd93c251e2cc9af0100e92a3526547 File name: helpconfig.exe Detection ratio: 4 / 56 Analysis date: 2016-12-16 07:19:26 UTC ( 1 minute ago ) Antivirus Result Update Bkav HW32.Packed.F166 20161215 Invincea trojan.win32.coinminer.aq 20161202 Qihoo-360 HEUR/QVM20.1.0000.Malware.Gen 20161216 Symantec Heur.AdvML.B 20161216 2016-12-16 00:26:57.767028 IP 192.168.1.102.49829 > 122.155.18.63.80: Flags [P.], seq 0:288, ack 1, win 256, length 288: HTTP: GET /helpconfig.exe HTTP/1.1 E..H{3@…/….fz..?…P…A….P….M..GET /helpconfig.exe HTTP/1.1 Accept: application/x-shockwave-flash, image/gif, image/jpeg, image/pjpeg, */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0) Accept-Encoding: gzip, deflate Host: wasulab.com Connection: Keep-Alive 2016-12-16 00:27:40.556464 IP 192.168.1.102.49831 > 86.59.21.38.443: Flags [P.], seq 0:200, ack 1, win 256, length 200 E…_V@…mB…fV;.&…..\’.`…P…3…………………..<.Ed~.7<A….,…….89….+./. .       […]