| MD5 | f51bc4d81ccb3b8de466f0f00acf5b7b |
| SHA1 | 3cc3fe58bf04eab4859a4300b0b0dd968cdb571a |
| Filename | Boleto_PDF.imprimir.exe |
| Domains | [correiosweb-001-site1.btempurl.com] [bit.ly] [windows.microsoft.com] [res2.windows.microsoft.com] [ajax.microsoft.com] [res1.windows.microsoft.com] [ajax.aspnetcdn.com] [js.microsoft.com] [c.microsoft.com] |
| IP Addresses | [205.144.171.105] [69.58.188.40] [207.46.113.50] [184.25.56.90] [72.21.81.200] [72.246.204.38] [134.170.185.126] |
| Antivirus | [Downloader.Banload2.AMGD] |
| [DR/Delphi.A.9371] | |
| [Trojan-Downloader.Win32.Banload] | |
| [Trojan.Banload] | |
| [Trojan.Barys.D1D94] | |
| [Trojan.Win32.Banload.WTV] | |
| [Trojan.Win32.Inject.voue] | |
| [W32/Banload.WTV!tr.dldr] |