







| MD5 | 72ba765c6700ff0fc2e24a8651b0d459 |
| SHA1 | 4f301612e16481ca9278f656c0d3a4dc1a6fca24 |
| Filename | andro2.exe |
| IPs | [193.225.118.162] |
| IPs | [8.8.4.4] |
| IPs | [65.55.50.190] |
| IPs | [80.242.123.144] |
| IPs | [65.55.50.157] |
| Domains | [europe.pool.ntp.org] [update.microsoft.com] [androjose.com] [andromike.com] [andropaul.com] [androryan.com] |
| IP Addresses | [193.225.118.162] [8.8.4.4] [65.55.50.190] [80.242.123.144] [65.55.50.157] [217.198.219.102] [65.55.50.189] [191.232.80.55] [88.198.180.55] |
| Antivirus | [Artemis!72BA765C6700] |
| [BackDoor-FCQS!72BA765C6700] | |
| [Backdoor/Kasidet.dt] | |
| [Backdoor/Win32.Kasidet] | |
| [Downloader.Small.PLW] | |
| [HEUR/QVM10.1.Malware.Gen] | |
| [RDN/BackDoor-FCQS!a] | |
| [Troj/Agent-AMZD] | |
| [Trojan-Downloader.Win32.Wauchos] |