| MD5 | fab20f4fb23bb1b13ddb2b0d6025eda1 |
| SHA1 | 2b18409e920f4c333a1bd49e491c48275cc26932 |
| Filename | cr-extensis.exe |
| Domains | [get.int-cp3-234.xyz] [dl.ic-free.xyz] [up.int-ic-4.xyz] |
| IP Addresses | [54.192.146.134] [54.192.146.125] [54.192.145.208] [54.230.32.74] |
| Antivirus | [Artemis!FAB20F4FB23B] |
| [not-a-virus:AdWare.Win32.AdLoad.jsjf] | |
| [NSIS/TrojanDownloader.Adload.AT] | |
| [PossibleThreat.P0] | |
| [PUP/Win32.DownloadManager] | |
| [Suspicious.Cloud.9] | |
| [Trojan.LVBP.ED] | |
| [Trojan/Win32.Inject] | |
| [Trojan:Win32/Miuref.F] |