| MD5 | 987e7dc7803e25472bdb1f7b18c0fd3e |
| SHA1 | cd84f22bc814fc43414aba810588e57920ad4c11 |
| Filename | payload.exe |
| Domains | [europe.pool.ntp.org] [update.microsoft.com] [disorderstatus.ru] [differentia.ru] |
| IP Addresses | [5.103.128.88] [157.55.240.94] [185.112.82.40] |
| Antivirus | [Downloader.Wauchos.Win32.1868] |
| [Gamarue-FBM!987E7DC7803E] | |
| [Heur.AdvML.B] | |
| [SScope.Worm.Ngrbot] | |
| [Troj/Wauchos-D] | |
| [Trojan-Downloader.Win32.Wauchos.v] | |
| [Trojan-Downloader/W32.Wauchos.16896] | |
| [Trojan.DL.Wauchos!ebpD0nHySyA] | |
| [Trojan.Injector.BLT] |