| MD5 | 1f7d3b284804b824a4aa26e6e101ed79 |
| SHA1 | e3a6d6aabc95eecf4335460a4c207a6b47292f44 |
| Domains | [www.update.microsoft.com.nsatc.net] [109.120.180.29] [faumoussuperstars.ru] [powerrembo.ru] [update.microsoft.com] [lunaizemlya.ru] |
| IP Addresses | [134.170.58.221] [65.55.50.157] [109.120.180.29] [109.120.155.30] |
| Antivirus | [Backdoor.Win32.Androm.iajb] |
| [Mal/Wonton-BB] | |
| [Malware-gen*Win32*Malware-gen] | |
| [TR/AD.Gamarue.Y.88] | |
| [Trojan*Win32/Bagsu!rfn] | |
| [Trojan.Agent] | |
| [Trojan.Siggen.65341] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Kryptik.DUYD!tr] | |
| [Win32/Kryptik.DUYD] |