| MD5 | d95977917f6e9e441bc0502edb5d5cc7 | 
| SHA1 | 25ebdf93840293645bff3d213e15eacf4c83ae84 | 
| Domains | [microsoft.com] [a767.dscms.akamai.net] [download.microsoft.com] | 
| IP Addresses | [134.170.188.221] [134.170.185.46] [23.3.98.11] [23.3.98.41] | 
| Antivirus | [Downloader.Upatre.Win32.50491] | 
| [Malware-gen*Win32*Malware-gen] | |
| [Pakes.RBB] | |
| [Trojan*Win32/Kovter!rfn] | |
| [Trojan.Downloader.Upatre] | |
| [Trojan.DownLoader15.5888] | |
| [Trojan.Ransomlock.AK] | |
| [Trojan.Win32.Kovter] | |
| [W32/Kryptik.DUGQ!tr] | |
| [W32/Ransom.FIMW-4865] |