| MD5 | 2d2ae1c8d3859315d6fa66c6891d5a8f |
| SHA1 | 1a2e64b24f37964dfe7326468ceb5832af6443d4 |
| Filename | 304.exe |
| Domains | [europe.pool.ntp.org] [microsoft.com] [acontecemusicshows.com.br] [rusmaster.spb.ru] [seo-gain.ru] [u41796.netangels.ru] [gerardbalian.com] [bat99-11611.co] |
| IP Addresses | [5.9.110.236] [23.96.52.53] [177.153.227.105] [91.219.194.28] [37.140.192.17] [91.201.52.109] [192.34.23.48] [185.93.187.105] |
| Antivirus | [Artemis!2D2AE1C8D385] |
| [Backdoor.W32.Androm] | |
| [Backdoor.Win32.Androm.jdlq] | |
| [Suspicious.Cloud.9] | |
| [Trojan.DownLoader19.23928] | |
| [Trojan.Razy.D3C4E] | |
| [Trojan.Win32.Xpack.eagmau] | |
| [Trojan.Win32.Z.Razy.105984.A[h]] | |
| [Trojan[Backdoor]/Win32.Androm] | |
| [W32/Androm.ENUQ!tr.bdr] |