| MD5 | 19cbbe7bbed9b5bfbb5da58d22cc805e |
| SHA1 | ae818767784bc9ed5ed54ae86cab90a809772e85 |
| Filename | Order Voucher.exe |
| Domains | [swiftcopy.site90.com] [error404.000webhost.com] |
| IP Addresses | [31.170.162.223] [54.235.221.226] |
| Antivirus | [HW32.Packed.3EF8] |
| [TR/Dropper.A.4061] | |
| [Troj/Wonton-SO] | |
| [Trojan-PSW.Win32.Chisburg.wyg] | |
| [Trojan.FakeBor.ED] | |
| [Trojan.Mikey.D3ED5] | |
| [Trojan.Win32.InfoStealer.wyg] | |
| [Trojan/Win32.MDA] | |
| [TrojanPSW.Chisburg.r4] | |
| [TrojanSpy:Win32/Plimrost.B] |