| MD5 | 4a0635161f3129df6d4c9968c3250538 |
| SHA1 | ab79170658bb211680e0d76b3362eee64ff9b57b |
| Filename | hbc.exe |
| IPs | [103.26.128.84] |
| IPs | [173.252.120.6] |
| IPs | [198.55.111.50] |
| IPs | [66.228.35.252] |
| IPs | [97.107.129.217] |
| IPs | [95.211.195.245] |
| Domains | [facebook.com] [cqfjpzckitt.com] [bitueohbcxhdleq.com] [hweqtpihiacrb.com] [wetcssrysvgkiwg.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [qcmbartuop.bit] |
| IP Addresses | [103.26.128.84] [173.252.120.6] [198.55.111.50] [66.228.35.252] [97.107.129.217] [95.211.195.245] |
| Antivirus | [Backdoor.Bot] |
| [DangerousObject.Multi.Gen] | |
| [Dropper.A.Necurs.92672] | |
| [Dropper.Necurs.Win32.4005] | |
| [MSIL5.IYM] | |
| [PWSZbot-FAEB!4A0635161F31] | |
| [TR/Samca.2741843] | |
| [Troj/Msil-ANY] | |
| [Trojan-Dropper.Win32.Necurs.wrl] | |
| [Trojan.Agent/Gen-Injector] |