| MD5 | b7304f61675429d72eba6ba10d08ea4b |
| SHA1 | 41921523c02e07aabc1cf255239f7a4b4abd729d |
| Filename | 4444323363945543589549420863.exe.infected |
| Domains | [fhr.data.mozilla.com] [ayh2m57ruxjtwyd5.namepospay.com] [ayh2m57ruxjtwyd5.optiontosolutionbbs.com] [tiles.services.mozilla.com] [ayh2m57ruxjtwyd5.optionpay2all.com] [ocsp.digicert.com] [eugeniobonato.com] [ayh2m57ruxjtwyd5.democraticash.com] [en.wikipedia.org] [ip-addr.es] |
| IP Addresses | [63.245.215.95] [89.108.88.122] [52.10.61.192] [72.21.91.29] [107.180.1.233] [208.80.154.224] [188.165.164.184] [38.229.72.16] |
| Antivirus | [Inject3.DQS] |
| [Mal/Zbot-UE] | |
| [Ransom-CWall.a] | |
| [Ransom:Win32/Crowti.A] | |
| [Trojan.Encoder.514] | |
| [Trojan.Win32.Ransom.ygq] | |
| [Trojan.Zbot.IQK] | |
| [TrojanPWS.Zbot.A4] |