| MD5 | 59bb43ab2239baf5721807ec606d5397 |
| SHA1 | 67c964aa1f9baabf3544345bc968aa2fd28d9d6e |
| Filename | hfxtnsu.exe |
| IPs | [54.210.80.108] |
| IPs | [104.27.142.176] |
| Domains | [ipinfo.io] [24u4jf7s4regu6hn.fenaow48fn42.com] [24u4jf7s4regu6hn.sm4i8smr3f43.com] [24u4jf7s4regu6hn.tor2web.blutmagie.de] [24u4jf7s4regu6hn.tor2web.org] |
| IP Addresses | [54.210.80.108] [104.27.142.176] |
| Antivirus | [HEUR/QVM10.1.Malware.Gen] |
| [Inject2.CCYS] | |
| [Trj/Chgt.O] | |
| [Troj/Ransom-AUM] | |
| [Trojan-Ransom.Win32.Bitman.mw] | |
| [UDS:DangerousObject.Multi.Generic] | |
| [Win32.Trojan.Bp-ransomware.Ejqz] | |
| [Win32/Filecoder.EM] |