| MD5 | 2101882b35b2638778ce4aa0c2459db3 |
| SHA1 | 53350396be1aa5f2bf2ee92bf33a5dccf3deb078 |
| Domains | [nutqlfkq123a2.com] [nutqlfkq123a4.com] [nutqlfkq123a11.com] [nutqlfkq123a10.com] [nutqlfkq123a3.com] [nutqlfkq123a5.com] [nutqlfkq123a6.com] [nutqlfkq123a9.com] [nutqlfkq123a1.com] [nutqlfkq123a12.com] |
| IP Addresses | [58.53.94.144] [166.78.144.80] |
| Antivirus | [Mal/Wonton-AN] |
| [Ransom-FVA!2101882B35B2] | |
| [Trojan.FileLock] | |
| [Trojan.Girtk.CVSW.phfc] | |
| [Trojan.Kryptik.Win32.783380] | |
| [Trojan.Siggen.65341] | |
| [TrojanRansom.Crowti.MUE.A4] | |
| [W32/Kryptik.CVSW!tr] | |
| [W32/Rovnix.A.gen!Eldorado] | |
| [Win32/Kryptik.CVSW] |