MD5 | 36095572717aee2399b6bdacef936e22 |
SHA1 | 7f0d5b65f370767679968843c48918c65de22606 |
Filename | 2015-05-08-ransomware-sample.exe |
IPs | [52.6.1.107] |
IPs | [104.18.62.63] |
IPs | [104.18.55.35] |
IPs | [192.251.226.206] |
IPs | [38.229.70.4] |
IPs | [87.240.143.241] |
Domains | [ipinfo.io] [24u4jf7s4regu6hn.dlosrngis35.com] [24u4jf7s4regu6hn.anfeua74x36.com] [24u4jf7s4regu6hn.tor2web.blutmagie.de] [24u4jf7s4regu6hn.tor2web.org] |
IP Addresses | [52.6.1.107] [104.18.62.63] [104.18.55.35] [192.251.226.206] [38.229.70.4] [87.240.143.241] [54.210.80.108] [104.18.63.63] [194.150.168.70] [54.209.233.84] |
Antivirus | [Artemis!36095572717A] |
[HEUR/QVM10.1.Malware.Gen] | |
[Mal/Generic-L] | |
[Mal/Generic-S] | |
[Suspicious_GEN.F47V0508] | |
[TR/Dropper.Gen] | |
[Trojan-Ransom.Win32.Bitman.lt] | |
[Trojan.Bitman!] |