| MD5 | d1f82bc81b27e432592c7c5f0db3ddea |
| SHA1 | 1a9022a19f9bd4ecb8e5bada1b777d6fffb76b81 |
| Filename | 2a_Via_Boleto.cpl |
| IPs | [198.15.67.149] |
| IPs | [187.17.123.240] |
| IPs | [69.58.188.40] |
| Domains | [www.nevandonews.xpg.com.br] [bit.ly] |
| IP Addresses | [198.15.67.149] [187.17.123.240] [69.58.188.40] |
| Antivirus | [Backdoor/Win32.Graybird] |
| [HW32.CDB.90ea] | |
| [Malware.QVM37.Gen] | |
| [Packed/PECompact] | |
| [TR/ATRAPS.Gen] | |
| [Trojan.Win32.Banload.bTFP] | |
| [TrojanBanker.ChePro] |