| MD5 | 13c2ab8eb1270d689560b60ceaf8e944 |
| SHA1 | 2378cc862e959604e560e46e1858df5d206320f6 |
| Domains | [microsoft.com] [a767.dscms.akamai.net] [download.microsoft.com] |
| IP Addresses | [134.170.188.221] [134.170.185.46] [23.3.98.11] [23.3.98.41] |
| Antivirus | [Downloader.Upatre.Win32.50491] |
| [Malware-gen*Win32*Malware-gen] | |
| [Pakes.RBB] | |
| [Trojan*Win32/Kovter!rfn] | |
| [Trojan.Downloader.Upatre] | |
| [Trojan.DownLoader15.5888] | |
| [Trojan.Ransomlock.AK] | |
| [Trojan.Win32.Kovter] | |
| [W32/Kryptik.DUGQ!tr] | |
| [W32/Ransom.EXXO-2757] |