| MD5 | 1d479d3195537ee5cc66f3456564065e |
| SHA1 | 64fb04cf8b3afdd696250540c9798f3083a7d61f |
| Domains | [update.down123.net] [www.58ad.cn] [58ad.cn] [91ww.91fu.com] |
| IP Addresses | [115.28.45.16] [119.97.143.20] [119.97.143.21] [119.97.143.25] [119.97.143.26] [119.97.143.85] [119.97.143.18] |
| Antivirus | [Mal/VMProtBad-A] |
| [Malware-gen*Win32*Malware-gen] | |
| [Trojan*Win32/Startpage.WR] | |
| [Trojan.Click3.10574] | |
| [Trojan.Win32.VMProtect] | |
| [Trojan.Yoddos.Win32.449] | |
| [W32/S-74fc28cb!Eldorado] | |
| [W32/VMProtBad.A!tr] | |
| [Win32/Blacked] | |
| [Win32/Packed.VMProtect.ABD] |