| MD5 | b812eb8d58d560ed79097131f1747e73 |
| SHA1 | 5826d3a3b466c204b145de4ad033c83f723c6970 |
| Filename | LOCKY_EXE |
| Domains | [www.chernobylair.com] [vsgehkrrv.xyz] [gbvxmkxtyqnuybxgt.pw] [povrcjwmlwtmiqhq.biz] [uvdqdpnwml.biz] [xotoilig.pw] [igltypghxxuuldtm.pw] [lpfksmrprkfolw.pw] [dryvoxek.su] [lwvamrejyjc.work] |
| Antivirus | [Adware.Win32.iBryte.ERXQ] |
| [Mal/Ransom-EH] | |
| [PossibleThreat] | |
| [Ransom.Locky] | |
| [Ransom.Locky.r5] | |
| [Ransom:Win32/Locky!rfn] | |
| [Ransom_LOCKY.CP] | |
| [TR/Locky.dhi] | |
| [Trj/GdSda.A] | |
| [Trojan.DownLoader19.56612] |