| MD5 | 7991ecbd1e532f67c2e9139097eb41f4 | 
| SHA1 | 18c80e01498b2269a132daf56ce4f7218c801dd3 | 
| Filename | Bfomzejbtthhbldb.exe | 
| IPs | [212.71.250.4]  | 
| IPs | [46.149.111.28]  | 
| Domains | [hwuiingqeuubi.org]  [nqqvixcjiwctjc.net] [bsruhgvqucgcij.biz] [oyofjnpbqrehje.ru] [cbpeivjidwiprx.org] [apwebfpkigypqb.co.uk] [zj3hku3gchrizjoorozbzxc2lx2x3qpcjazdxytkdgvseuhtt3sqfz4s5bz237x.7xpdlxamwpcduubyyyz4gse7y22gcmzpspnt] [bdxqenlmuxxchq.info] [bxuncudcqbbdjq.com] [clvafdyedsapjp.net]  | 
| IP Addresses | [212.71.250.4]  [46.149.111.28]  | 
| Antivirus | [Generic35.AHDS]  | 
| [HW32.Packed.43BA]  | |
| [Mal/Generic-S]  | |
| [RDN/Ransom!dv]  | |
| [Suspicious_Gen4.FJJCC]  | |
| [TR/Crilock.B.12]  | |
| [Trojan-Ransom.Win32.Blocker!O]  | |
| [Trojan-Ransom.Win32.Blocker.cvno]  | |
| [Trojan.Blocker!rN+j0wjwrQU]  | |
| [Trojan.Crilock.r4]  |