| MD5 | e6ac5d0ea662e4eeeb902fd30dbd9f40 | 
| SHA1 | b828645785f1222ce012bf02f67441ec0d5b35c1 | 
| Domains | [www.update.microsoft.com.nsatc.net] [windowsupdate.microsoft.com] | 
| IP Addresses | [65.55.50.189] [65.55.50.190] | 
| Antivirus | [Downloader.Ponik!gen11] | 
| [Ransom-CTB!E6AC5D0EA662] | |
| [TR/Dalexis.ujwfe] | |
| [Troj/Agent-AIRO] | |
| [Trojan-Downloader.Win32.Cabby.cccy] | |
| [Trojan-Downloader.Win32.Upatre] | |
| [Trojan.DownLoad3.35539] | |
| [Trojan.Email.FakeDoc] | |
| [Trojan.Ransom.Dalexis.A] |