







| MD5 | 51e63633487f9180ec8031980684bf86 |
| SHA1 | 21ea35d8e9f11c4fd49438c5b70b2755b34decd0 |
| Filename | winbmwcw.exe |
| IPs | [204.12.237.194] |
| IPs | [85.234.141.72] |
| IPs | [83.149.35.109] |
| IPs | [105.156.151.94] |
| IPs | [184.105.143.147] |
| IPs | [190.96.165.24] |
| IPs | [177.80.128.111] |
| Domains | [dvdlogistics.co.th] [buzzdriver.in] [expressosupermercado.com.br] [/images/image.gif] |
| IP Addresses | [204.12.237.194] [85.234.141.72] [83.149.35.109] [105.156.151.94] [184.105.143.147] [190.96.165.24] [177.80.128.111] [61.19.247.140] [216.218.224.229] [254.0.0.0] |
| Antivirus | [Backdoor.Generic.abzx] |
| [Backdoor.Win32.Agent.aag] | |
| [Backdoor.Win32.SuspectCRC] | |
| [BDS/Backdoor.Gen] | |
| [Dhupad.ACJ] | |
| [Generic.dx!51E63633487F] | |
| [Generic.Malware.FYdld.B0EFA92C] | |
| [HEUR:Backdoor.Win32.Generic] | |
| [Mal/TinyDL-T] |