| MD5 | eb0e1288278952bc5f0d1fc0663dde80 |
| SHA1 | 9e86e480ab61150e7e3669865de9cfaa28316f86 |
| IPs | [116.255.202.90] |
| IPs | [166.78.144.80] |
| Domains | [nutqlfkq123a2.com] [nutqlfkq123a4.com] [nutqlfkq123a11.com] [nutqlfkq123a10.com] [nutqlfkq123a3.com] [nutqlfkq123a5.com] [nutqlfkq123a6.com] [nutqlfkq123a9.com] [nutqlfkq123a1.com] [nutqlfkq123a12.com] |
| IP Addresses | [116.255.202.90] [166.78.144.80] |
| Antivirus | [Inject2.BNHQ] |
| [Mal/Wonton-AN] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Ransom.Crowti.A4] | |
| [RDN/Ransom!eo] | |
| [SScope.Trojan.Agent.2315] | |
| [Trojan-Ransom.Win32.Foreign.llab] | |
| [Trojan.Agent.DED] | |
| [TrojanRansom.Foreign.r4] |