| MD5 | 1e64cbfd21cdf7d1d2a8a509e948e779 |
| SHA1 | 1a50c64edacec30e7f430d6c485a14ba9ce62542 |
| Domains | [www.update.microsoft.com.nsatc.net] [faumoussuperstars.ru] [update.microsoft.com] [109.120.180.29] [powerrembo.ru] |
| IP Addresses | [134.170.58.222] [134.170.58.221] [109.120.155.30] |
| Antivirus | [Backdoor.Win32.Androm.iaju] |
| [Mal/Wonton-BB] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Ransom.Crowti.B4] | |
| [TR/AD.Gamarue.Y.91] | |
| [Trojan*Win32/Bagsu!rfn] | |
| [Trojan.Agent] | |
| [Trojan.Siggen.65341] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Kryptik.DUYD!tr] |