| MD5 | 89ca15ac4836b126ed69c66901dd3a4a |
| SHA1 | 659512e68359315b0ec7327d5e5b44f7cc573d69 |
| Filename | nxltula.exe |
| Domains | [ioasis.org] [polyhedrusgroup.com] [espoirsetvie.com] [ladiesdehaan.be] [chonburicoop.net] [ferienwohnung-walchensee-pur.de] |
| IP Addresses | [208.112.115.36] [108.175.159.4] [213.186.33.24] [27.254.96.151] [109.237.138.48] |
| Antivirus | [Mal/Ransom-EK] |
| [Packed.Win32.Tpyn] | |
| [Ransom-O] | |
| [Ransom.Teslacrypt.OL4] | |
| [Ransom:Win32/Tescrypt] | |
| [Ransom_HPCRYPTESLA.SM2] | |
| [Trj/GdSda.A] | |
| [Trojan.Banker.Shifu.ci] | |
| [Trojan.Cripack.3] | |
| [Trojan.Encoder.3995] |