| MD5 | de5c4a0d33ddd4864cc921ee098cf2a1 |
| SHA1 | 12bb364274d2ed359716e3f89ed712c9070fabd5 |
| Domains | [hnb.net] [firecheerleaders.fr] [ladiesdehaan.be] [chonburicoop.net] [passlift.com] [actionpourisrael.com] |
| IP Addresses | [222.165.133.242] [213.186.33.171] [62.210.92.9] [27.254.96.151] [217.116.196.239] [213.186.33.4] |
| Antivirus | [BackDoor-FDCH!DE5C4A0D33DD] |
| [Mal/Wonton-BZ] | |
| [Ransom*Win32/Tescrypt!rfn] | |
| [Ransom.Crowti.WR7] | |
| [Trojan-Ransom.Win32.Bitman.hzw] | |
| [Trojan.Agent.BQGM] | |
| [Trojan.Bitman.Win32.1016] | |
| [Trojan.Inject1.56622] | |
| [Trojan.MalPack.PK] | |
| [W32/Agent.XL.gen!Eldorado] |