| MD5 | 2e589c1faa6d1229e36b1a615dc1a42e |
| SHA1 | ca7ff8850648a7c950ca989a0735eb027233716e |
| Filename | mainpayload.exe |
| IPs | [66.171.248.172] |
| IPs | [94.100.180.160] |
| Domains | [whatismyipaddress.com] [smtp.mail.ru] |
| IP Addresses | [66.171.248.172] [94.100.180.160] |
| Antivirus | [Backdoor.Agent.PDL] |
| [Gen:Heur.MSIL.Krypt.5] | |
| [Injector.gen!r] | |
| [Mal/Generic-S] | |
| [Malware.QVM03.Gen] | |
| [MSIL/Injector.PE!tr] | |
| [not-a-virus:HEUR:PSWTool.Win32.NetPass.gen] | |
| [PE:Trojan.MSIL.KeyLogger!1.647D] | |
| [TR/Ransom.243715] |