| MD5 | 3c66056f2d105df48ad95f807dee19c5 |
| SHA1 | 2b726ede9e391c8044a98ccd82c3fa9ddfd96969 |
| Filename | 2014-06-27-Nuclear-EK-malware-payload-1-of-2.exe |
| IPs | [67.8.236.182] |
| IPs | [70.75.230.0] |
| IPs | [77.121.135.191] |
| IPs | [46.98.70.131] |
| Domains | [carbon-flx.su] [orion-baet.su] |
| IP Addresses | [67.8.236.182] [70.75.230.0] [77.121.135.191] [46.98.70.131] |
| Antivirus | [Downloader.Generic13.CGWG] |
| [Mal/Generic-S] | |
| [Spyware.Zbot.VXGen] | |
| [TR/Dldr.Agent.164864.8] | |
| [Trj/Dtcontx.M] | |
| [Trojan-Spy.Win32.Zbot.tiyr] | |
| [Trojan.Win32.Generic!BT] | |
| [TrojanDownloader:Win32/Zemot] | |
| [Win32.Troj.Zbot.ti.(kcloud)] | |
| [Win32.Trojan-spy.Zbot.Llri] |