| MD5 | d037c647fcfa58b5eae73fd06efce028 |
| SHA1 | 0863f8d49d09aff51a4eba12bfa33c8c22159f30 |
| Domains | [air-ferry.com] [api.hostip.info] |
| IP Addresses | [74.91.226.2] [162.220.62.158] |
| Antivirus | [Malware-gen*Win32*Malware-gen] |
| [TR/Autoit.473976] | |
| [Trojan*Win32/Wimepud.A] | |
| [Trojan-FGNT!D037C647FCFA] | |
| [Trojan-Ransom.Win32.Mbro] | |
| [Trojan.Agent.LSA] | |
| [Trojan.DownLoader13.46986] | |
| [W32/Trojan.QFIQ-3264] | |
| [Win.Trojan.10489724] |