| MD5 | 52ff6b46296ad77154391ac847f94981 | 
| SHA1 | 1dba24aadf57645caa19ecefc122424b98e8293a | 
| Filename | 80_1_.exe | 
| Domains | [conspec.us] [tmfilms.net] [iqinternal.com] [goktugyeli.com] [saludaonline.com] | 
| IP Addresses | [50.62.245.1] [50.63.202.66] [107.180.44.212] [185.22.184.156] [184.168.53.1] | 
| Antivirus | [Inject3.ADVH] | 
| [Mal/Ransom-EG] | |
| [Ransom:Win32/Tescrypt!rfn] | |
| [Ransom_HPCRYPTESLA.SMJ9] | |
| [Trojan-Ransom.Win32.Bitman.qjx] | |
| [Trojan.Bitman!] | |
| [Trojan.Encoder.4084] | |
| [Trojan.Injector.Win32.367282] | |
| [Trojan.Ransom.ARY] |