| MD5 | aa2000a8f618378e6ae4f196e4563ee6 |
| SHA1 | 802da5afa4e39bfcd75c3f54598821101db10efd |
| Domains | [microsoft.com] [a767.dscms.akamai.net] [download.microsoft.com] |
| IP Addresses | [134.170.185.46] [134.170.188.221] [23.3.98.41] [23.3.98.11] |
| Antivirus | [Downloader.Upatre.Win32.51567] |
| [Pakes.RDW] | |
| [Trojan*Win32/Kovter!rfn] | |
| [Trojan-Downloader.Win32.Upatre.epvj] | |
| [Trojan.Kovter] | |
| [Trojan.MulDrop6.3116] | |
| [Trojan.Ransomlock.AK] | |
| [Trojan.Win32.Kovter] | |
| [W32/Trojan.KPXF-9392] | |
| [W32/Upatre.C!tr.dldr] |