SHA256: 745e0a1c522ac9b91ea00198dc89373da7bdb032c56096ba5c3aebc13ad52ad7 File name: he.exe Detection ratio: 60 / 61 Analysis date: 2017-05-21 20:59:17 UTC ( 0 minutes ago ) Ad-Aware Gen:Variant.Zegost.2 20170521 AegisLab Troj.PSW32.W.Bjlog.kZLs 20170521 AhnLab-V3 Trojan/Win32.Bjlog.R2244 20170521 ALYac Gen:Variant.Zegost.2 20170520 Antiy-AVL Trojan[PSW]/Win32.Bjlog.dtwr 20170521 Arcabit Trojan.Zegost.2 20170521 Avast Win32:Zegost-C [Trj] 20170521 AVG Agent_r.AIO 20170521 Avira (no cloud) TR/PSW.Bjlog.lfzb 20170521 AVware Trojan.Win32.Generic.pak!cobra 20170521 Baidu Win32.Backdoor.Zegost.b 20170503 BitDefender Gen:Variant.Zegost.2 20170521 Bkav W32.ZegostQKB.Trojan 20170520 CAT-QuickHeal TrojanDropper.Zegost.C5 20170520 ClamAV Win.Spyware.78740-1 20170521 CMC Trojan-PSW.Win32.Bjlog!O 20170521 Comodo Backdoor.Win32.Zegost.B 20170521   2017-05-21 15:47:58.953388 IP 192.168.1.102.55351 > 192.168.1.100.55555: Flags [P.], seq 1:400, ack 1, win 2053, length 399 E…..@…m@…f…d.7….+..n..P….i..GET /he.exe HTTP/1.1 Accept: image/jpeg, application/x-ms-application, image/gif, application/xaml+xml, image/pjpeg, […]