| MD5 | 73902aaf2444149e57286a18d7a1200b |
| SHA1 | a93353a89a56655e831be5127b9c50e6f86e6778 |
| Filename | 73902aaf2444149e57286a18d7a1200b.exe |
| IPs | [65.55.58.201] |
| IPs | [37.252.125.232] |
| IPs | [83.98.201.134] |
| Domains | [microsoft.com] [xbrswmsqrefs.com] [knbsqkijlyqimt.com] [alwmdrobzn.com] [vtvfpiruvyhhz.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] |
| IP Addresses | [65.55.58.201] [37.252.125.232] [83.98.201.134] |
| Antivirus | [Artemis!73902AAF2444] |
| [Backdoor/Win32.Necurs] | |
| [Downloader.Generic13.CBFK] | |
| [HEUR/Malware.QVM19.Gen] | |
| [HW32.CDB.24c5] | |
| [PE:Malware.XPACK-HIE/Heur!1.9C48] | |
| [RDN/Downloader.a!pz] | |
| [Trj/Necurs.D] | |
| [Troj/FakeAV-HDA] |