| MD5 | cebc3e8dfdcd25ccda7e5a60cdefc601 |
| SHA1 | a1dac23b6661243c750285a2b1e381a3ca4f3f18 |
| Filename | Turkcell_Subat_Fatura.exe |
| Domains | [uxagopupafw.johjaqutt.com] [alimevon.johjaqutt.com] [imexi.johjaqutt.com] [ymass.johjaqutt.com] [ehibakaltp.johjaqutt.com] [asbs.johjaqutt.com] [apyziligi.johjaqutt.com] [amytebnbat.johjaqutt.com] [oxolu.johjaqutt.com] [uforqwijavo.johjaqutt.com] |
| IP Addresses | [188.227.75.59] |
| Antivirus | [Artemis] |
| [Artemis!CEBC3E8DFDCD] | |
| [Backdoor.Androm] | |
| [Backdoor.Androm!Onr+YSqgpy4] | |
| [Backdoor.Androm.ecu] | |
| [Backdoor.Win32.Androm.jcfw] | |
| [Backdoor/W32.Androm.573440.D] | |
| [Ransom-Teerac!CEBC3E8DFDCD] | |
| [Ransom.FileLocker] |