| MD5 | 252b988ee0c1e6ce6d9156a69491f6e0 |
| SHA1 | a7097d800d94a8131b87ff44b47b340515c90797 |
| IPs | [96.17.10.8] |
| IPs | [96.17.10.32] |
| IPs | [66.147.240.178] |
| IPs | [208.73.211.175] |
| IPs | [208.73.211.193] |
| IPs | [208.73.211.242] |
| IPs | [208.73.211.163] |
| IPs | [208.73.211.174] |
| IPs | [141.8.225.80] |
| IPs | [128.199.187.239] |
| Domains | [a1363.g.akamai.net] [armoredlegion.com] [freeridershools.com] [ourdatatransfers.com] [worldorderlive.com] [transaerosystems.com] [127.0.0.1] [crl.microsoft.com] |
| IP Addresses | [96.17.10.8] [96.17.10.32] [66.147.240.178] [208.73.211.175] [208.73.211.193] [208.73.211.242] [208.73.211.163] [208.73.211.174] [141.8.225.80] [128.199.187.239] |
| Antivirus | [Backdoor*Win32/Cycbot.B] |
| [BackDoor-EXI.gen.ab] | |
| [Backdoor.Cycbot!gen9] | |
| [Backdoor.Cycbot.B] | |
| [Backdoor.Win32.Agent] | |
| [BDS/Cycbot.bizc] | |
| [BKDR_CYCBOT.SME3] | |
| [Mal/FakeAV-IS] | |
| [Trojan.Dropper.PE4] |