| MD5 | b621e549974e9e5ca35721096077ca5a | 
| SHA1 | dcd6be7e28159af11ff8cc46b43f353d4fba5271 | 
| Filename | return_report.exe | 
| IPs | [162.217.97.146] | 
| IPs | [95.101.0.155] | 
| IPs | [84.94.187.245] | 
| IPs | [116.14.195.245] | 
| IPs | [108.230.237.240] | 
| IPs | [172.245.217.122] | 
| IPs | [58.252.57.193] | 
| IPs | [80.212.194.56] | 
| IPs | [217.35.80.36] | 
| IPs | [84.59.129.23] | 
| IPs | [93.180.110.180] | 
| IPs | [188.124.212.94] | 
| IPs | [162.238.73.112] | 
| IPs | [31.192.23.176] | 
| IPs | [83.16.185.30] | 
| IPs | [173.239.143.42] | 
| IPs | [75.99.113.250] | 
| IPs | [99.114.99.151] | 
| IPs | [120.151.247.221] | 
| IPs | [46.49.119.78] | 
| IPs | [190.204.140.2] | 
| Domains | [pmcforus.com] [www.download.windowsupdate.com] | 
| IP Addresses | [162.217.97.146] [95.101.0.155] [84.94.187.245] [116.14.195.245] [108.230.237.240] [172.245.217.122] [58.252.57.193] [80.212.194.56] [217.35.80.36] [84.59.129.23] | 
| Antivirus | [Heuristic.LooksLike.Win32.Suspicious.J] | 
| [Trojan.Agent/Gen-Dropper] | |
| [Trojan.Dropper] | |
| [Trojan/Win32.Zbot] | |
| [W32/Trojan.SGQX-5393] |