See: http://urlquery.net/report.php?id=1485898696935
See: https://www.virustotal.com/nl/url/a62df20d5864ffdd033b183b1e8d1d5cb9eafcfc2953732018f5fe4f5b52b3c4/analysis/1485899767/
Detection still not added here (or could be a PUP detected).
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file.
FP? → Authenticode signature block and FileVersionInfo properties
Signature verification Signed file, verified signature
Signers
[+] OOO “Meti-Vostok”
[+] COMODO RSA Code Signing CA
[+] COMODO SECURE?
Re: http://www.freefixer.com/library/file/nethost.exe-201916/ & http://www.threatexpert.com/files/nethost.exe.html
polonus