| MD5 | 690f6707128855d85a106a6fa112f344 |
| SHA1 | 1797e17c49838ed8b6b262c45344286157c611f5 |
| Filename | 8a87b6f6f927b17daa9380796eee17ed95ea4120a80673f75ce4dd05c7e534c0 |
| Domains | [ip.tyk.nu] [toysfortheneedyandaid.org] [thenat.org] [sunday-group.com] [trunghung.net] [flywritepublishing.com] |
| IP Addresses | [144.76.253.225] [97.107.141.123] [107.180.57.37] [81.177.49.6] [103.254.12.52] [178.32.234.182] |
| Antivirus | [Mal/Ransom-EC] |
| [Ransom:Win32/Tescrypt.A] | |
| [Ransomware-FBK!690F67071288] | |
| [Ransom_CRYPTESLA.SMJ3] | |
| [Troj.Banker.W32!c] | |
| [Trojan-Banker.Win32.Shifu.tx] | |
| [Trojan.Encoder.3584] | |
| [Trojan.PWS.Shifu!] |