| MD5 | 09f44d0b421543891b4ffc660cce0775 |
| SHA1 | d928fd5c0c53177b8eb5100570a63fd7a247455f |
| IPs | [180.76.2.41] |
| IPs | [115.231.175.130] |
| IPs | [117.25.157.170] |
| IPs | [171.91.157.135] |
| IPs | [183.61.179.207] |
| Domains | [hi.n.shifen.com] [yy.com] [hi.baidu.com] |
| IP Addresses | [180.76.2.41] [115.231.175.130] [117.25.157.170] [171.91.157.135] [183.61.179.207] |
| Antivirus | [RiskTool.Win32.ProcPatcher.a*Trojan.Win32.HAW.hw.silent.422723*Trojan-Dropper.Win32.Agent.hnms] |
| [Riskware/Qhost] | |
| [Rootkit.Agent!50AD] | |
| [Rootkit.HideProc*Rootkit.Gen.2] | |
| [TR/Spy.16384.1288*TR/Rootkit.Gen2] | |
| [Trojan.GenericKD.2023309] | |
| [Trojan.MulDrop4.54205*Trojan.MulDrop3.26100] | |
| [W32/Agent.EW.gen!Eldorado] | |
| [Win.Trojan.8860345] | |
| [Win32/Ramnit.A] |