| MD5 | e93ab7c9c3a362ca2412d7e53fbad6da |
| SHA1 | 9d8ecae9688467e2ad2684f9fd9ee96ecd91f1ed |
| Domains | [www.update.microsoft.com.nsatc.net] [www.update.microsoft.com] [trishnaseeds.com] |
| IP Addresses | [134.170.58.222] [191.232.80.55] |
| Antivirus | [Downloader.Andromeda.Win32.2658] |
| [MSIL.ILA] | |
| [MSIL/Injector.BCU] | |
| [Obfuscated-FAJY!hb] | |
| [Trojan.2C68BE1755E2432E] | |
| [Trojan.Ransom] | |
| [Trojan.Win32.Agent] | |
| [TrojanDownloader.Andromeda] | |
| [W32/A-e289839f!Eldorado] |