SHA256: 2030f0f9fa95e6e824d12664b48344c6e4fd58e607c96e6300c88a8292d1f743 File name: start_page.exe Detection ratio: 44 / 56 Antivirus Result Update ALYac Trojan.GenericKD.3282138 20170116 AVG Generic38.TUP 20170116 AVware Trojan.Win32.Generic!BT 20170116 Ad-Aware Trojan.GenericKD.3282138 20170116 AegisLab Adware.W32.Extbro!c 20170114 AhnLab-V3 Trojan/Win32.Mupad.C1469490 20170115 Arcabit Trojan.Generic.D3214DA 20170116 Avast Win32:Adware-gen [Adw] 20170116 Avira (no cloud) PUA/LoadMoney.fgl 20170115 BitDefender Trojan.GenericKD.3282138 20170116 CAT-QuickHeal Trojan.Mupad 20170114 ClamAV Win.Adware.Extbro-1 20170116 Comodo ApplicUnwnt.Win32.RuKometa.A 20170116 Cyren W32/S-6a0e4df5!Eldorado 20170116 DrWeb Trojan.LoadMoney.1452 20170116 ESET-NOD32 a variant of Win32/RuKometa.E potentially unwanted 20170115   2017-01-16 00:10:18.346622 IP 192.168.1.102.63320 > 193.238.152.147.80: Flags [P.], seq 0:308, ack 1, win 256, length 308: HTTP: GET /start_page.exe HTTP/1.1 E..\`.@…|….f…..X.P…..U..P…….GET /start_page.exe HTTP/1.1 Accept: application/x-shockwave-flash, image/gif, image/jpeg, image/pjpeg, */* Accept-Language: […]