| MD5 | a109003441417c6deecebec12c07a23a |
| SHA1 | 432ef382dc036efd95ccffbaa748007194c18fcd |
| Filename | Booking Order__.zip |
| Domains | [holdonuaremadetoberich.webatu.com] |
| IP Addresses | [31.170.161.76] |
| Antivirus | [Artemis] |
| [Artemis!513E02156718] | |
| [Backdoor.Win32.Androm.hjtz] | |
| [Infostealer.Limitail] | |
| [TR/Dropper.MSIL.42025] | |
| [Trojan.PWS.Multi.1690] | |
| [Win32.Trojan.Inject.Auto] |