| MD5 | 462c340e3d8c494bce7462930faf3596 | 
| SHA1 | fa0be0f382506053118a926b5a18b328e0d1dcef | 
| Filename | e105e63670.exe.mp3 | 
| Domains | [balkanium.altervista.org] [beriotv.altervista.org] [amgholistictraining.com] [bradford-marine.com] [bajproductions.nl] [ceramikazamkowa.pl] | 
| IP Addresses | [104.28.23.51] [104.28.1.188] [89.31.143.125] [72.47.233.22] [83.137.194.16] [212.91.26.153] | 
| Antivirus | [HW32.Packed.898F] | 
| [Ransom:Win32/Crowti.A] | |
| [Ransom_CRYPWALL.YUYAGD] | |
| [RDN/Suspicious.bfr] | |
| [Trojan.DownLoader17.64754] | |
| [Trojan.Win32.DownLoader17.dzfjpf] | |
| [Trojan.Win32.Yakes.nteu] | |
| [Trojan.Yakes.btzu] | |
| [Trojan/Win32.Downloader] | |
| [Trojan/Win32.Yakes] |