| MD5 | 888abebbe20c2bb8b8dd98bf6a7122ae |
| SHA1 | 142bb925990b5b34bbff1babdc01ece79f5b3253 |
| Filename | HMAS9B4720.wsf |
| Domains | [iranmall.org] [williamstarnetsys.org] [regentsteel.com] [www.regentsteel.com] [bxkbjrmtaa.work] [tswsgajtwhqkosd.su] |
| IP Addresses | [5.144.130.31] [142.4.4.160] [109.75.171.91] [91.239.235.130] |
| Antivirus | [JS.Downloader] |
| [JS.DownLoader.2270] | |
| [JS.Downloader.33862[h]] | |
| [JS.Trojan-Downloader.Nemucod.jn] | |
| [Js.Trojan.Raas.Auto] | |
| [JS/Nemucod.D3B4!tr.dldr] | |
| [JS/TrojanDownloader.Nemucod.BAH] | |
| [Troj/JSDwnldr-W] | |
| [Win32.SuspectCrc] |