| MD5 | 0813d7d89b8a451aa29ae0ecfd77221f |
| SHA1 | 5cda833a92409bf78fb5ae2c0ef942dd022f4097 |
| Filename | 3.tmp.exe |
| Domains | [esbook.com] [hmgame.net] [shampooherbal.com] |
| IP Addresses | [174.136.12.119] [104.128.239.91] |
| Antivirus | [Win32.Trojan.Filelocker.Dkt] |
| [Win32.Trojan.Kryptik.qb] |