| MD5 | 4f5e81ab2d9bbfb185e7ea9a82b4aecf |
| SHA1 | 04ed6ee37e54fee4887bc3178eed80fe04dc8b5c |
| Domains | [www.update.microsoft.com.nsatc.net] [faumoussuperstars.ru] [update.microsoft.com] [109.120.180.29] [powerrembo.ru] |
| IP Addresses | [191.232.80.55] [65.55.50.189] [109.120.155.30] |
| Antivirus | [BackDoor.Andromeda.662] |
| [Malware-gen*Win32*Malware-gen] | |
| [Ransom.Crowti.B4] | |
| [TR/AD.Gamarue.Y.397] | |
| [Trojan.Win32.Injector] | |
| [VirTool*Win32/CeeInject.GM] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Androm.ICLP!tr.bdr] | |
| [Win32/Injector.CHXP] |