| MD5 | 0223e0a98409e458eabea9540df31244 | 
| SHA1 | 62dc89e7e8c5ae976d277c51b12a2c335d278bad | 
| Domains | [amazingfloorrestoration.com] [glynwedasia.com] | 
| IP Addresses | [103.6.244.180] [203.174.83.138] | 
| Antivirus | [Downloader-FVO!0223E0A98409] | 
| [Mal/EncPk-ZC] | |
| [TR/Yarwi.B.19] | |
| [Trojan-Downloader.Win32.Upatre] | |
| [Trojan.Bublik] | |
| [Trojan.DownLoad3.28161] | |
| [Trojan.Win32.Bublik.bjwh] | |
| [TrojanDownloader*Win32/Upatre.A] | |
| [TrojanDownloader.Upatre.A6] |