| MD5 | 4d66d08727d7e975658573aa24e4531e |
| SHA1 | 76b7a34718726d8301152f3ae839dcd0a3353e28 |
| Filename | Factuur001.pdf.exe |
| IPs | [46.19.37.108] |
| IPs | [194.109.206.212] |
| IPs | [154.35.32.5] |
| IPs | [208.83.223.34] |
| IPs | [188.138.122.22] |
| IPs | [82.94.251.220] |
| IPs | [192.251.226.206] |
| Domains | [ip.telize.com] [rmxlqabmvfnw4wp4.onion.gq] [rmxlqabmvfnw4wp4.onion.cab] [rmxlqabmvfnw4wp4.onion.lt] [rmxlqabmvfnw4wp4.tor2web.blutmagie.de] |
| IP Addresses | [46.19.37.108] [194.109.206.212] [154.35.32.5] [208.83.223.34] [188.138.122.22] [82.94.251.220] [192.251.226.206] |
| Antivirus | [MSIL/JCP!tr] |
| [MSIL7.BRLS] | |
| [Ransom-C] | |
| [Ransom:Win32/Critroni.B] | |
| [Suspicious_Gen5.BGDHV] | |
| [TR/Dropper.MSIL.146696] | |
| [Troj/MSIL-CMP] | |
| [Trojan.AgentWDCR.DWI] | |
| [Trojan.Inject] | |
| [Trojan.Injector!2/EiAwcBtVQ] |