| MD5 | b631935e1ee25d51a76f997b67237663 |
| SHA1 | 799bf8f16b5eb938d3320bf35c682e6e3159771e |
| Filename | Payload20.exe |
| Domains | [wallet.7ci.ru] |
| IP Addresses | [31.41.41.1] |
| Antivirus | [Ransomware-FOV!B631935E1EE2] |
| [Ransom_CRYSIS.F116HM] | |
| [Troj.Ransom.W32!c] | |
| [Trojan-Ransom.Win32.Crusis.bf] | |
| [Trojan.Encoder.3976] | |
| [Trojan.Ransom.Locky.13] | |
| [Trojan.Win32.Filecoder] | |
| [Trojan/Win32.Locky.N2085738486] | |
| [Trojan:Win32/Skeeyah.A!rfn] | |
| [Trojan[Ransom]/Win32.Crusis] |