| MD5 | d16fddc23de6b2c762980ef5052e287f |
| SHA1 | 3611a890f77a53f991db9b4039577c193341f233 |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [BackDoor-FDCH!D16FDDC23DE6] |
| [Mal/Wonton-BZ] | |
| [Ransom*Win32/Tescrypt!rfn] | |
| [Ransom.Crowti.WR7] | |
| [Ransom_.AE990D2B] | |
| [Trojan-Ransom.Win32.Blocker.ibav] | |
| [Trojan.Blocker.Win32.33300] | |
| [Trojan.Cap1621223.udfw] | |
| [Trojan.Inject1.56622] | |
| [Trojan.MalPack.PK] |