| MD5 | 099273b14740b83a2d64afe2410063ab |
| SHA1 | 650c1ae43a0ed3d85f2edc736d4c246ed2961597 |
| Filename | 2016-06-15-Sundown-EK-payload.ex_ |
| Domains | [86t7b9br9.ddns.net] |
| IP Addresses | [5.254.106.254] |
| Antivirus | [Adware/Ruco] |
| [BackDoor.Wirenet.139] | |
| [Backdoor:Win32/NetWiredRC.C] | |
| [GrayWare[AdWare:not-a-virus,HEUR]/Win32.Ruco] | |
| [Inject3.ATJA] | |
| [PUA.Ruco!] | |
| [TR/Dropper.VB.joaj] | |
| [Trj/GdSda.A] | |
| [Troj.Spy.W32.Zbot.mD6I] | |
| [Trojan.Dropper.VB] |