| MD5 | d77fe23d98c90052230b12a4d647590a | 
| SHA1 | a93fde1fbeabed4e10db136eed40ad21d5218a45 | 
| Filename | 304.exe | 
| Domains | [europe.pool.ntp.org]  [microsoft.com] [acontecemusicshows.com.br] [rusmaster.spb.ru] [seo-gain.ru] [u41796.netangels.ru] [gerardbalian.com] [bat99-11611.co]  | 
| IP Addresses | [80.69.163.42]  [104.43.195.251] [177.153.227.105] [91.219.194.28] [37.140.192.17] [91.201.52.109] [192.34.23.48] [185.93.187.105]  | 
| Antivirus | [Backdoor.Androm!p//6TMFByb4]  | 
| [Backdoor.Androm.dyy]  | |
| [Backdoor.Androm.Win32.32287]  | |
| [BackDoor.Andromeda.1407]  | |
| [Backdoor.W32.Androm]  | |
| [Backdoor.Win32.Androm.jdln]  | |
| [Trojan.Razy.D3C4E]  | |
| [Trojan.Win32.Xpack.eagmau]  | |
| [Trojan[Backdoor]/Win32.Androm]  | |
| [W32/Androm.JDLN!tr.bdr]  |