| MD5 | 5f0ef554c784d6281e993a7ef65d2683 |
| SHA1 | d3bfbe4c22a3b38b1a99d7cc7877b257e3747701 |
| Filename | 20130615_1408_Shipment_Status_008436284830.exe |
| IPs | [159.253.6.40] |
| IPs | [188.132.193.50] |
| IPs | [80.190.246.224] |
| IPs | [180.235.132.29] |
| IPs | [78.46.105.166] |
| IPs | [212.112.245.183] |
| IPs | [130.185.109.207] |
| IPs | [82.222.170.172] |
| IPs | [80.190.241.9] |
| IPs | [141.138.197.101] |
| IPs | [88.191.139.235] |
| IPs | [80.190.254.42] |
| IPs | [202.29.41.122] |
| IP Addresses | [159.253.6.40] [188.132.193.50] [80.190.246.224] [180.235.132.29] [78.46.105.166] [212.112.245.183] [130.185.109.207] [82.222.170.172] [80.190.241.9] [141.138.197.101] |
| Antivirus | [BackDoor.Kuluoz.4] |
| [Downloader/Win32.Dofoil] | |
| [Mal/EncPk-AED] | |
| [Suspicious_Gen4.EERYL] | |
| [TR/Dldr.Dofoil.qjl] | |
| [Trojan-Downloader.Win32.Dofoil.qjl] | |
| [Trojan.DL.Dofoil!9lcBWqp7YAM] | |
| [Trojan.Fakeavlock] |