| MD5 | c7de13c9a7a3900d8a066dc503c0bbf6 |
| SHA1 | e96a5670a6b2532b2b70bee493ad72fe612e60dc |
| Filename | fax00415741732781728.scr |
| IPs | [176.62.165.200] |
| IPs | [154.35.32.5] |
| IPs | [86.59.21.38] |
| IPs | [171.25.193.9] |
| IPs | [208.83.223.34] |
| Domains | [www.jimcole.be] |
| IP Addresses | [176.62.165.200] [154.35.32.5] [86.59.21.38] [171.25.193.9] [208.83.223.34] |
| Antivirus | [Generic_s.DXE] |
| [HEUR/Malware.QVM07.Gen] | |
| [HW32.Packed.B7B5] | |
| [PWSZbot-FADF!C7DE13C9A7A3] | |
| [Ransom:Win32/Crowti.A] | |
| [RDN/Suspicious.bfr!bh] | |
| [TR/Crowti.A.103] | |
| [Troj/Ransom-AMB] | |
| [Trojan.Crowti.Win32.1] | |
| [Trojan.Encoder.514] |