| MD5 | 280202f38891afea17ee10bb2fb77a86 |
| SHA1 | 0dc674c92f0d2690e10862f576ca13092cf8d7ca |
| Filename | 2016-02-11-Admedia-Angler-EK-payload-TeslaCrypt.exe |
| Domains | [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] [hnb.net] [www.hnb.net] [firecheerleaders.fr] [www.firecheerleaders.fr] |
| IP Addresses | [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] [222.165.133.242] [23.236.62.147] [54.88.39.163] |
| Antivirus | [Mal/Ransom-EC] |
| [Packed.Win32.Tpyn] | |
| [Ransom.FileLocker] | |
| [Ransom:Win32/Tescrypt.A] | |
| [Ransomware-FDS!280202F38891] | |
| [Ransom_CRYPTESLA.SMJ3] | |
| [Ransom_HPLOCKY.SM1] | |
| [Trojan-Spy/W32.Banker.552960.AX] | |
| [Trojan.Encoder.3852] |