| MD5 | 0a892fab47c69118ce58c251f6355040 |
| SHA1 | 48ed48c47010fc2f492270f20730099415601e23 |
| Filename | virussign.com_0a892fab47c69118ce58c251f6355040.vir |
| IPs | [134.170.188.221] |
| IPs | [67.18.187.111] |
| IPs | [64.246.132.14] |
| IPs | [50.7.96.4] |
| Domains | [microsoft.com] [hxeahgglkmt.com] [pytipwgbht.com] [mofmhuuopdsxtg.com] [ufizivleflounic.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] |
| IP Addresses | [134.170.188.221] [67.18.187.111] [64.246.132.14] [50.7.96.4] |
| Antivirus | [Downloader.Generic14.ENL] |
| [HW32.Packed.B554] | |
| [PE:Trojan.Win32.Generic.179E397D!396245373] | |
| [RDN/Downloader.a!tt] | |
| [Trojan-Dropper.Win32.Necurs] | |
| [Trojan-Dropper.Win32.Necurs.wuq] | |
| [Trojan.FakeMoz.ED] | |
| [Trojan.Win32.Generic!BT] | |
| [Trojan.Win32.Necurs.AB] |