| MD5 | b56abf9bfae85ceef5ec62e643c2d71c |
| SHA1 | 878a57cab1be85886f53bbad6721f008ce319818 |
| Filename | Rooh.EXE |
| IPs | [216.58.216.78] |
| IPs | [208.91.197.54] |
| Domains | [google.com] [s2.taraba.net] |
| IP Addresses | [216.58.216.78] [208.91.197.54] |
| Antivirus | [Malware-gen*Win32*Malware-gen] |
| [PWS*Win32/Dyzap] | |
| [PWS-FBZW!B56ABF9BFAE8] | |
| [Ransomer.DWH] | |
| [Trojan.Agent.ED] | |
| [Trojan.Generic.12396363] | |
| [Trojan.Win32.Generic] | |
| [W32/Kryptik.CVUC!tr] | |
| [Win32/Battdil.I] |