| MD5 | 13c16536f8b52a548838742506853068 |
| SHA1 | e3fecff1e85c7e605a2718aeb042c55b8736ff50 |
| Filename | 1.exe |
| Domains | [windowsupdate.microsoft.com] [piensaenweb.net] [abavides.es] [makingart.fr] [www.rbphoto.com.br] [correcamins.net] [frauricambi.com] [gteng.it] [www.halldeoccidente.com] |
| IP Addresses | [157.55.240.94] [185.14.56.98] [212.227.247.205] [217.160.65.15] [69.16.226.64] [217.76.130.122] [217.11.80.204] |
| Antivirus | [Inject3.ARMU] |
| [Ransomware-FLO!13C16536F8B5] | |
| [TR/Dropper.VB.lkyq] | |
| [Trj/GdSda.A] | |
| [Troj/VB-JBD] | |
| [Trojan-Ransom.Win32.Takbum.c] | |
| [Trojan.Encoder.4683] | |
| [Trojan.Injector] | |
| [Trojan.Takbum!] | |
| [Trojan.Takbum.b] |