| MD5 | a39bc98519836ae7e0d0dceda3cf83ae |
| SHA1 | f9d36feb20175f57d650564fe6b729b335512f38 |
| Domains | [www.update.microsoft.com.nsatc.net] [faumoussuperstars.ru] [update.microsoft.com] [109.120.180.29] [powerrembo.ru] |
| IP Addresses | [65.55.50.190] [65.55.50.158] [109.120.155.30] |
| Antivirus | [Backdoor.Win32.Androm.icjt] |
| [Mal/Wonton-BB] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Ransom.Crowti.B4] | |
| [TR/AD.Gamarue.Y.415] | |
| [Trojan.Encoder.514] | |
| [VirTool*Win32/CeeInject.GM] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Kryptik.DVIJ!tr] | |
| [Win32/Kryptik.DVIJ] |