| MD5 | 835c49402c922868ab7f39d8074d9a81 |
| SHA1 | c4309ab1af87f4c7e3ce94813491892fcc79d39e |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [BackDoor-FDCH!835C49402C92] |
| [Mal/Wonton-BZ] | |
| [Ransom*Win32/Tescrypt!rfn] | |
| [Ransom.Crowti.WR7] | |
| [Trojan-Ransom.Win32.Blocker.ibeq] | |
| [Trojan.Cap1621223.qdwg] | |
| [Trojan.Inject1.56622] | |
| [Trojan.Kryptik.Win32.861347] | |
| [Trojan.MalPack.PK] | |
| [W32/Agent.XL.gen!Eldorado] |