| MD5 | fb90500c28d30340fe86f0123dc6e905 |
| SHA1 | 3f5182e1a003e01b0bf5f98d0fc4df1c2e2e2a03 |
| Filename | EMM-8585785.scr |
| Domains | [johnbull30.ddns.net] [xenithmngt.com.sg] |
| IP Addresses | [154.118.22.210] [184.107.242.114] |
| Antivirus | [Backdoor:Win32/Fynloski.A] |
| [Mal/MSIL-OM] | |
| [MSIL8.GRI] | |
| [TR/Dropper.MSIL.162440] | |
| [Trojan-PSW.Win32.Fareit.ayfj] | |
| [Trojan.MSIL.Injector] | |
| [Trojan.PWS.Stealer.13025] | |
| [Trojan.Win32.InfoStealer.ayfj] | |
| [Trojan/PSW.Fareit.gvm] | |
| [Trojan/Win32.Inject] |