| MD5 | aa4897bbfaa3371b7e6629ba7ddba241 | 
| SHA1 | 376051fa6801184d404eb1356eda5aa3979994a9 | 
| Filename | BanklineForm.exe | 
| IPs | [108.162.198.52] | 
| IPs | [108.162.199.52] | 
| IPs | [64.50.166.122] | 
| IPs | [95.101.0.115] | 
| IPs | [1.249.40.86] | 
| IPs | [36.2.242.186] | 
| IPs | [75.76.179.220] | 
| IPs | [172.12.106.55] | 
| IPs | [66.55.26.163] | 
| IPs | [66.55.26.130] | 
| Domains | [bookkeepingcertificationwiki.com] [nickandsheila.co.uk] [www.download.windowsupdate.com] | 
| IP Addresses | [108.162.198.52] [108.162.199.52] [64.50.166.122] [95.101.0.115] [1.249.40.86] [36.2.242.186] [75.76.179.220] [172.12.106.55] [66.55.26.163] [66.55.26.130] | 
| Antivirus | [Spyware.Zbot] | 
| [Trojan.Bublik.Win32.12911] | |
| [Trojan.Downloader.Zbot.E] | |
| [Trojan.Email.FakeDoc] | |
| [Trojan/Downloader.Waski.a] | |
| [TrojanDownloader.Upatre.A4] | |
| [Upatre.BD] | |
| [W32.FamasconLTC.Trojan] | |
| [W32/Trojan.RDSG-2033] | |
| [W32/Trojan3.HEB] |