| MD5 | 23b3abc6decd785e5b6ddfc9c46c7d7d |
| SHA1 | 56ab3bbd468610e28f39bebe212e9e70bd9aec91 |
| Filename | start_me_on_vm_before.exe |
| IPs | [157.55.240.94] |
| IPs | [8.8.4.4] |
| Domains | [www.update.microsoft.com] [gioanhdabiet.com] |
| IP Addresses | [157.55.240.94] [8.8.4.4] |
| Antivirus | [Backdoor] |
| [BackDoor.Andromeda.22] | |
| [Backdoor.Win32.A.Androm.13824.X] | |
| [Backdoor.Win32.Androm.a] | |
| [Backdoor/Androm.a] | |
| [Backdoor/Androm.al] | |
| [Backdoor/W32.Androm.13824.I] | |
| [Backdoor/Win32.Androm] | |
| [Defiler.G] |