| MD5 | 9f84cb528e05fada70371fddf0e36cbb |
| SHA1 | 8ce26dbdf8561ff92793f2e20d13f11ed2e35d76 |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [Mal/Wonton-BZ] |
| [Ransom*Win32/Tescrypt.E] | |
| [Ransom.Crowti.WR7] | |
| [Ransomware-FDZ!9F84CB528E05] | |
| [Trojan-Ransom.Win32.Bitman.ihw] | |
| [Trojan.Encoder.3817] | |
| [Trojan.MalPack.PK] | |
| [TROJ_FORUCON.BMC] | |
| [W32/Agent.XL.gen!Eldorado] | |
| [Win32*Malware-gen] |