| MD5 | d20b04c3192bf0690b116074d54cdab5 |
| SHA1 | 92710797c88dd99d5d8ed663184ee5870d7af39f |
| Filename | Formsheet_with_changed_password_.exe |
| Domains | [icanhazip.com] |
| IP Addresses | [64.182.208.185] [64.182.208.184] |
| Antivirus | [TR/Spy.ZBot.sbboqw] |
| [Trojan.Agent.CRY] | |
| [Trojan.DownLoader15.47355] | |
| [Trojan.Injector.BPT] | |
| [TrojanDownloader*Win32/Upatre] | |
| [TrojanDownloader.Upatre.A4] | |
| [Upatre-FACH!D20B04C3192B] | |
| [W32/Monlin.AB!tr] | |
| [W32/S-0fb78347!Eldorado] | |
| [Win32/Kryptik.DUAO] |