In addition, Virustotal gives the OP file the same hash value and a clean bill of health. The evidence therefore points to a higher probability of a local infection but from a different source.
But going back to this:
https://chainz.cryptoid.info/viral/address.dws?VQiLDfxG88aHakAwgn9NAsUg4kMEPSNJTD.htmtwo different victims are now believed to have had funds transferred(stolen) to the above addy, once with a malicious wallet and one with a local infection?