 
     
 
     
 
     
 
     
 
     
 
     
 
     
| MD5 | f87893b441483020ba75c870ffb7b6af | 
| SHA1 | 2f622c1b053cc3244af7e75844a1d6ec0b0479c4 | 
| Filename | vevft-a.exe | 
| Domains | [myexternalip.com] [dpaulick.de] [comercialelgolf.com] [diem.com.ar] [virtualconnection.com.br] [devolus.com.br] [eenergy.in] [3st7uyjfocyourll.onion.to] | 
| IP Addresses | [78.47.139.102] [134.19.72.115] [134.19.75.182] [87.106.241.161] [181.88.192.115] [191.252.44.35] [187.17.111.97] [103.231.41.126] [217.197.83.197] | 
| Antivirus | [Adware.Eorezo.Win32.18359] | 
| [Ransom.FileLocker] | |
| [Ransom.Tescrypt.C4] | |
| [Ransom:Win32/Tescrypt!rfn] | |
| [Troj/Ransom-BRV] | |
| [Trojan.Agent.ED] | |
| [Trojan.Encoder.2668] | |
| [Trojan.Filecoder!rBr+Fiz0Osk] | |
| [Trojan.Win32.Encoder.dyehlp] | |
| [Trojan.Win32.Filecoder.EM] |