| MD5 | 678e106a63f28b636d2f05eec9b68d83 |
| SHA1 | 513f5540b413401d8b1f78600faba15e418acf5d |
| Domains | [dewisrihotel.com] [doublesix-management.com] |
| IP Addresses | [198.1.84.102] [198.1.84.99] |
| Antivirus | [PWSZbot-FLV!678E106A63F2] |
| [TR/AD.Yarwi.Y.1458] | |
| [Trojan.DownLoad3.28161] | |
| [Trojan.Win32.Badur] | |
| [TrojanDownloader*Win32/Upatre.A] | |
| [TrojanDownloader.Upatre.A6] | |
| [W32/Kryptik.PK!tr] | |
| [W32/Trojan.OTBG-6637] | |
| [Win.Trojan.Agent-934128] |