| MD5 | f0d0872763058e047922ead2474943ec | 
| SHA1 | 5629f91e72401440024ec170430e60f50d4f4590 | 
| Filename | 40dbdf4b-7db5306a.exe | 
| Domains | [mimopywyn.com] [dihojocitiz.com] [qobirawif.com] [gavywelugamoqe.com] [cikojavif.com] [rinysegaci.com] [mobesinolacuke.com] [xybobimaholos.com] [posubudiqof.com] [tucaxiqiwityp.com] | 
| Antivirus | [FakeAlert-Rena.p] | 
| [FakeCloudAV2012] | |
| [Rogue:W32/FakeAv.HM] | |
| [Rogue:Win32/FakeRean] | |
| [TR/Fake.Rean.5824] | |
| [Trj/Sirefef.C] | |
| [Troj/FauxSec-B] | |
| [Trojan.Fakealert.20509] | |
| [Trojan.Win32.FakeAv.jzce] | |
| [Trojan.Win32.Generic.pak!cobra] |