MD5 | a08784f5691a0a8ce6249e1981dea82c |
SHA1 | fdfd630730da8c6dc075fb4a9a1011ec53914562 |
Filename | edcknmy.exe |
IPs | [69.9.204.36] |
IPs | [52.6.1.107] |
IPs | [104.18.46.12] |
IPs | [192.251.226.206] |
IPs | [38.229.70.4] |
Domains | [ipinfo.io] [dpckd2ftmf7lelsa.afnwdsy4j32.com] [dpckd2ftmf7lelsa.9isernvur33.com] [dpckd2ftmf7lelsa.tor2web.blutmagie.de] [dpckd2ftmf7lelsa.tor2web.org] |
IP Addresses | [69.9.204.36] [52.6.1.107] [104.18.46.12] [192.251.226.206] [38.229.70.4] [52.4.247.103] [54.209.233.84] [65.112.221.20] [54.210.80.108] [104.18.47.12] |
Antivirus | [HEUR/QVM10.1.Malware.Gen] |
[ransom.win32.tescrypt.a] | |
[Ransom:Win32/Tescrypt.A] | |
[RDN/Ransom!ex] | |
[TR/Dropper.A.38261] | |
[Trj/Genetic.gen] | |
[Troj.Ransom.W32.Bitman.lq!c] | |
[Troj/Wonton-RO] | |
[Trojan-Dropper.Win32.Blocker] |