| MD5 | 2639ebdd46ee8a651242e3c8476420dc |
| SHA1 | dabae0eb876f49b10db72e61f9485e7811c2dd7e |
| Filename | 2014-10-06-Sweet-Orange-EK-malware-payload.exe |
| IPs | [178.210.203.179] |
| IPs | [72.69.127.158] |
| IPs | [65.55.56.206] |
| IPs | [192.162.19.87] |
| IPs | [96.49.23.63] |
| IPs | [166.78.145.146] |
| IPs | [178.18.18.30] |
| Domains | [freeairway.su] [nitomsk.su] [barsamus.su] |
| IP Addresses | [178.210.203.179] [72.69.127.158] [65.55.56.206] [192.162.19.87] [96.49.23.63] [166.78.145.146] [178.18.18.30] |
| Antivirus | [HEUR/Malware.QVM10.Gen] |
| [Troj.W32.Gen] | |
| [Trojan.Ransom.ED] | |
| [Win32/Rovnix.N] |