| MD5 | 29d62bbc62e69ae2dadda132b3ba1213 |
| SHA1 | df4bd32bf88c199d62b1ef2455cb972d6b841771 |
| Filename | PROMO.EXE |
| IPs | [74.125.137.104] |
| IPs | [74.125.137.105] |
| IPs | [74.125.137.106] |
| IPs | [74.125.137.147] |
| IPs | [74.125.137.99] |
| IPs | [74.125.137.103] |
| Domains | [www.google.com] [cdn99.fileshostinginformation.com] |
| IP Addresses | [74.125.137.104] [74.125.137.105] [74.125.137.106] [74.125.137.147] [74.125.137.99] [74.125.137.103] |
| Antivirus | [Heur.W32] |
| [Mal/Medfos-K] | |
| [Malware-gen*Win32*Malware-gen] | |
| [Medfos-FAB!29D62BBC62E6] | |
| [SScope.Trojan.Midhos.2513] | |
| [Trojan*Win32/Medfos.AF] | |
| [Trojan.Medhos.RRE] | |
| [Trojan.Win32.Generic] | |
| [Trojan.Win32.Medfos] | |
| [TROJ_MEDFOS.SMG] |