| MD5 | d6b08a0b80175e8201828b1dce84243f | 
| SHA1 | 88739f89d5b2e494c00d19c80b71d143f40865af | 
| Filename | P. Order..exe | 
| Domains | [whatismyipaddress.com] | 
| IP Addresses | [23.56.112.45] | 
| Antivirus | [Backdoor.Androm] | 
| [Backdoor/Win32.DarkKomet] | |
| [MSIL.Trojan.Injector.ak] | |
| [MSIL/Injector.BEO!tr] | |
| [MSIL8.CFWA] | |
| [TR/Meredrop.EB.1] | |
| [Troj/FakeMS-X] | |
| [Trojan.Kazy.D40518] | |
| [Trojan.Win32.Llac.dclrqi] | |
| [TrojWare.MSIL.Meredrop.EI] |