| MD5 | 4e4ef58d0a647a42a8769f158b1ff666 |
| SHA1 | ce946eaca86cc5d15af149073f72537d810f5697 |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [Mal/Wonton-BZ] |
| [Ransom*Win32/Tescrypt.E] | |
| [Trojan-Ransom.Win32.Bitman.ikj] | |
| [Trojan.Encoder.3817] | |
| [Trojan.MalPack.PK] | |
| [TROJ_FORUCON.BMC] | |
| [W32/Kryptik.ENHZ!tr] | |
| [W32/Rovnix.C.gen!Eldorado] | |
| [Win32/Kryptik.ENJR] |