| MD5 | 5436fab80122d9e228130b143836d23b |
| SHA1 | 982d45078aff646cdb475cddea1870e7cf5611a5 |
| Filename | PAYMENT VOUCHER.DOC |
| Domains | [yugomisr.com] [www.download.windowsupdate.com] |
| IP Addresses | [41.65.131.20] [13.107.4.50] |
| Antivirus | [heur.macro.download.cc] |
| [HEUR.VBA.Trojan.d] | |
| [Macro.Troj.Downloader!c] | |
| [Macro.Trojan.Dropper.Auto] | |
| [O97M/Downloader] | |
| [Troj/DocDl-AXW] | |
| [Trojan.Script.Donoff.eafucu] | |
| [TrojanDownloader:O97M/Donoff] |