| MD5 | 8b0cca757e097e452182a8e6c2090e13 |
| SHA1 | d8ce82e98368c92a9a43d0fed36b3fa012799800 |
| Filename | syshost.exe |
| Domains | [microsoft.com] [unrowblqousqdld.com] [pnjgugsflbwvca.com] [gsygqvezkik.com] [qnidzuioplmj.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [jfbbrj3bbbd.bit] |
| IP Addresses | [23.100.122.175] [173.255.246.13] [129.6.15.29] [128.138.141.172] |
| Antivirus | [Artemis!8B0CCA757E09] |
| [Dropper/Win32.Necurs.N2071109933] | |
| [Heur.AdvML.B] | |
| [TR/Necurs.EL.1] | |
| [Trj/Necurs.G] | |
| [Trojan-Downloader.Win32.Necurs] | |
| [Trojan-Dropper.Win32.Necurs.aaim] | |
| [Trojan.MalPack] | |
| [Trojan.Necurs.414] |