| MD5 | 46e4d91e7a65e670af9789525f32f535 | 
| SHA1 | 870fda79bedf329cf885d419a66448a8dc477723 | 
| Filename | 0d6d76594d2ecb69317de8f09d9ea185004c98836b08ad0ba8f2b9a10006c1c6 | 
| Domains | [www.58ad.cn] [www.go890.com] [www.haosou.com] [quc.qhimg.com] [p5.qhimg.com] | 
| IP Addresses | [119.97.143.40] [8.37.236.6] [106.120.160.134] [8.37.233.4] [54.192.144.145] | 
| Antivirus | [Artemis!2234D1B2CDB6] | 
| [Backdoor.Win32.Yobdam.lkj] | |
| [Backdoor.Yobdam] | |
| [Backdoor.Yobdam.r8] | |
| [Backdoor.Yobdam.Win32.1853] | |
| [Backdoor/W32.Yobdam.919552] | |
| [PE:Packer.Win32.StartPage.c!1075357398] | |
| [PSW.Ldpinch.AHDR] | |
| [Suspicious.Graybird.1] | |
| [TR/Spy.37376.192] |