| MD5 | 943a641f4336f919a14bb10cad6daa5e |
| SHA1 | a9a154f8a08b31b758f176d5c816258cf2c7411c |
| Filename | 411e6093.tmp |
| Domains | [microsoft.com] [qrdjfsotyhhpuuy.com] [cyqtfeajdotml.com] [brusbolcnyh.com] [dldcziqeatltj.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [npkxghmoru.biz] [svedhtilhfk.com] |
| IP Addresses | [23.96.52.53] [132.163.4.101] [45.127.112.2] [97.107.128.58] [169.142.32.162] |
| Antivirus | [Ransom.Locky] |
| [Ransomware-FHC!943A641F4336] | |
| [Trj/GdSda.A] | |
| [Troj.Dropper.W32.Necurs!c] | |
| [Troj/Locky-AC] | |
| [Trojan-Downloader.Win32.Necurs] | |
| [Trojan-Dropper.Win32.Necurs.aagz] | |
| [Trojan.Win32.Z.Necurs.152576[h]] | |
| [Trojan:Win32/Necurs] |