| MD5 | 12feb5ae3cd0c6bbaa1a23c7c6e976de |
| SHA1 | 6aeb722d4182ca92ed0c2005b6069a28b01c7088 |
| Domains | [www.update.microsoft.com.nsatc.net] [109.120.180.29] [faumoussuperstars.ru] [powerrembo.ru] [update.microsoft.com] [lunaizemlya.ru] |
| IP Addresses | [134.170.58.221] [65.55.50.189] [109.120.180.29] [109.120.155.30] |
| Antivirus | [BackDoor.Andromeda.1041] |
| [Backdoor.Win32.Androm.iaru] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Trojan.Kovter] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Kryptik.DVJT!tr] | |
| [Win32/Kryptik.DVFE] | |
| [Worm*Win32/Gamarue!rfn] |