| MD5 | 807faeb2db4101c8065a68bb166974a4 |
| SHA1 | 8c23c0e8e6b8d8d4d8b40f760f448c285f69a4e3 |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [Mal/Wonton-BZ] |
| [Ransom*Win32/Tescrypt!rfn] | |
| [Ransom.Crowti.WR7] | |
| [Trojan-Ransom.Win32.Bitman.ikq] | |
| [Trojan.Bitman.Win32.1024] | |
| [Trojan.Encoder.3817] | |
| [Trojan.MalPack.PK] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [W32/Kryptik.ENZR!tr] | |
| [Win32*Malware-gen] |