| MD5 | 0d18e44e6e58a4d14f0e61dd4e33a5f7 |
| SHA1 | 0ae49baffc289c2c5f916b64d06457b1de42ef49 |
| Domains | [www.update.microsoft.com.nsatc.net] [www.update.microsoft.com] [groupx.me] |
| IP Addresses | [65.55.50.190] [191.232.80.55] |
| Antivirus | [Gamarue-FBA!0D18E44E6E58] |
| [Inject3.CYN] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Trojan-Ransom.Win32.Blocker.hovr] | |
| [Trojan.Agent] | |
| [Trojan.DownLoad2.43630] | |
| [VirTool*Win32/VBInject.gen!JD] | |
| [Virus.Win32.VBInject] | |
| [W32/Trojan.VRIP-3698] | |
| [W32/YRK.FBA!tr] |