| MD5 | 2eb589fb26d2dd8a2840949bae6be7f8 |
| SHA1 | 0a8d1d5467c27f0918605a1f0771b340dd0189b9 |
| Filename | 50889bf4bed406b8628bbefd2c30d097dce26fdb5395ba40dc3dc155cd6819d9 |
| Domains | [whatismyipaddress.com] [mymountainsidemedical.com] |
| IP Addresses | [66.171.248.172] [192.186.218.105] |
| Antivirus | [Dropper-FNT!2EB589FB26D2] |
| [MSIL/Injector.PE!tr] | |
| [not-a-virus:PSWTool.Win32.NetPass.cif] | |
| [PE:Trojan.MSIL.KeyLogger!1.647D] | |
| [PSW.ILUSpy] | |
| [RiskWare[PSWTool]/Win32.NetPass.cif] | |
| [TR/Hijacker.A.31] | |
| [Trojan.MSIL.Inject] | |
| [Trojan.MSIL.Krypt.5] |