| MD5 | 1734340f8e7c501b590b79bb882cfaa2 | 
| SHA1 | 725194691df50f0d7aaa88488a29e1f3c6a09565 | 
| Filename | offlb.exe | 
| IPs | [204.79.197.203] | 
| IPs | [134.170.189.4] | 
| IPs | [65.55.57.27] | 
| IPs | [192.150.16.64] | 
| Domains | [a-0003.a-msedge.net] [www.go.microsoft.akadns.net] [lb1.www.ms.akadns.net] [www.wip4.adobe.com] [www.msn.com] [go.microsoft.com] [www.microsoft.com] [www.adobe.com] [rollingstockstarthere.net] | 
| IP Addresses | [204.79.197.203] [134.170.189.4] [65.55.57.27] [192.150.16.64] | 
| Antivirus | [Downloader.Generic14.CMP] | 
| [Malware-gen*Win32*Malware-gen] | |
| [Packed-CH!1734340F8E7C] | |
| [swizzor/Heur.I] | |
| [Trojan.Agent.ED] | |
| [Trojan.Sharik] | |
| [Trojan.Win32.Sharik] | |
| [Trojan.Win32.Sharik.uau] | |
| [W32/Sharik.UAU!tr] | |
| [Win32/TrojanDownloader.Zurgop.BK] |