| MD5 | fee5e752a0b984a1372ecec957d4b095 |
| SHA1 | 78b56b833be4cac2c703cf14e6382c66a53cdc3e |
| IPs | [65.55.138.126] |
| IPs | [65.54.51.250] |
| IPs | [69.89.25.171] |
| IPs | [94.102.53.180] |
| IPs | [166.78.144.80] |
| IPs | [185.53.177.20] |
| IPs | [192.0.78.25] |
| IPs | [192.0.78.24] |
| IPs | [8.8.4.4] |
| Domains | [update.microsoft.com.nsatc.net] [poppinga.com] [poppingb.com] [poppingd.info] [888950.parkingcrew.net] [poppingj.com] [poppin32.info] [popping45.com] [poppingk.com] [poppingh.com] |
| IP Addresses | [65.55.138.126] [65.54.51.250] [69.89.25.171] [94.102.53.180] [166.78.144.80] [185.53.177.20] [192.0.78.25] [192.0.78.24] [8.8.4.4] |
| Antivirus | [Backdoor.Win32.Androm.ghfo] |
| [Inject2.BOXQ] | |
| [Malware-gen*Win32*Malware-gen] | |
| [TR/Gamarue.A.1000] | |
| [Trojan.GenericKD.2163453] | |
| [Trojan.Win32.Injector] | |
| [W32/Backdoor.MRPC-1908] | |
| [Worm*Win32/Gamarue] |