| MD5 | ddd3ad84a64c8ffe572c62bce8d666c0 |
| SHA1 | 34ea1deab3d8ced7c8fe879de0b4f3f6f0eba18f |
| Domains | [www.update.microsoft.com.nsatc.net] [windowsupdate.microsoft.com] [helloguestmen.com] |
| IP Addresses | [191.232.80.55] [134.170.58.221] |
| Antivirus | [Backdoor.Win32.Androm.ibpz] |
| [PWS-Zbot.gen.aip] | |
| [Troj/Zbot-CMC] | |
| [Trojan.B4623E21DCF76421] | |
| [Trojan.Jorik.Androm.ur] | |
| [Trojan.Jorik.r4] | |
| [Trojan.PWS.Panda.2401] | |
| [Trojan.Win32.Jorik] | |
| [Trojan.Zbot.Win32.73995] | |
| [TrojanDownloader*Win32/Dofoil.R] |