| MD5 | dd98774b8e77bad6b6a75c68336afef4 | 
| SHA1 | d2428a64442e461e8fa0cdcebdb14be1a92761ae | 
| Filename | fax_msg20141120.pdf.exe | 
| IPs | [54.225.211.214] | 
| IPs | [194.150.168.70] | 
| Domains | [api.ipify.org] [ho7rcj6wucosa5bu.tor2web.org] [ho7rcj6wucosa5bu.tor2web.ru] | 
| IP Addresses | [54.225.211.214] [194.150.168.70] | 
| Antivirus | [HEUR/QVM10.1.Malware.Gen] | 
| [Hoax.Foreign] | |
| [Mal/Generic-S] | |
| [RDN/Ransom!el] | |
| [Suspicious_GEN.F47V1121] | |
| [Suspicious_Gen4.HHVYA] | |
| [TR/Agent.93184.96] | |
| [Trj/Chgt.L] | |
| [Trojan-Ransom.Win32.Foreign] |