| MD5 | 4989b9de21a4cfa506bb5cf177aa6e6f |
| SHA1 | c4a598731e728d75ecb12758d88c83e9e2f293b0 |
| Filename | syshost.exe |
| Domains | [facebook.com] [dyiriifshapskn.com] [uhmtdcrxawn.com] [qvohqyamty.com] [szjkycgfmcs.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] |
| IP Addresses | [173.252.120.68] [204.2.134.162] [173.255.246.13] [104.131.51.97] |
| Antivirus | [Artemis!4989B9DE21A4] |
| [HW32.Paked.AA60] | |
| [Necurs.BS] | |
| [PE:Malware.XPACK-HIE/Heur!1.9C48] | |
| [Trojan-Dropper.Win32.Necurs] | |
| [Trojan-Dropper.Win32.Necurs.wkp] | |
| [Trojan.Necurs.337] | |
| [Win32/TrojanDownloader.Necurs.B] |