SHA256: 4b7e44ab5e74b69db9742cc59642538bc39be03977e1c1db8a9ed709130e77ef File name: nethost.exe Detection ratio: 15 / 56 Analysis date: 2017-01-16 06:23:30 UTC ( 1 minute ago ) AhnLab-V3 PUP/Win32.LoadMoney.R193200 20170115 Avira (no cloud) TR/Crypt.XPACK.Gen7 20170115 Baidu Win32.Trojan.WisdomEyes.16070401.9500.9892 20170113 CrowdStrike Falcon (ML) malicious_confidence_100% (D) 20161024 ESET-NOD32 a variant of Win32/Kryptik.COWS 20170116 Fortinet W32/Kryptik.COWS!tr 20170116 Ikarus Trojan.Simda 20170115 Invincea virtool.win32.obfuscator.caf!bit 20170111 K7AntiVirus Trojan ( 004f58c41 ) 20170115 K7GW Trojan ( 004f58c41 ) 20170116 Kaspersky UDS:DangerousObject.Multi.Generic 20170116 Malwarebytes Trojan.Dropper 20170116 Qihoo-360 Win32/Trojan.cb1 20170116 Symantec Heur.AdvML.B 20170115 Tencent Win32.Trojan.Kryptik.Htct 201701 2017-01-15 23:35:58.432477 IP 192.168.1.102.62819 > 193.238.152.150.80: Flags [P.], seq 0:304, ack 1, win 256, length 304: HTTP: GET /nethost.exe HTTP/1.1 E..XB.@….R…f…..c.P..8>?F.GP…….GET […]