| MD5 | 6937609df01ac327b02a41d780aefbd8 |
| SHA1 | 7ff2a37d59f0e4b020cc5a242dbb8542bbfe6ee8 |
| Filename | cjexad.co.kr_data_loopw.emf.mal |
| Domains | [www.kbstar.com] [www.nonghyup.com] [www.shinhan.com] [www.wooribank.com] [open.citibank.co.kr] [www.epostbank.go.kr] [www.ibk.co.kr] [www.keb.co.kr] [www.kfcc.co.kr] [www.standardchartered.co.kr] |
| IP Addresses | [203.248.188.31] [218.239.250.1] [59.7.252.101] [210.182.9.227] [192.193.81.182] [210.90.8.170] [203.227.232.1] [119.206.202.1] [210.123.108.1] [210.105.69.135] |
| Antivirus | [Artemis!6937609DF01A] |
| [BackDoor.Tdss.11228] | |
| [BScope.P2P-Worm.Palevo] | |
| [Mal/EncPk-CK] | |
| [PSW.Banker7.BWA] | |
| [Suspicious.Cloud.5] | |
| [Trojan.Win32.Banker.ABEA] | |
| [W32/Banker.ABEA!tr.spy] |