| MD5 | 30f4176601688fe8762140f132942db1 | 
| SHA1 | d58c13638aab71176b5827b89113ed917dffc362 | 
| Filename | virussign.com_30f4176601688fe8762140f132942db1.vir | 
| IPs | [74.125.136.100] | 
| IPs | [91.233.244.106] | 
| IPs | [151.236.17.123] | 
| IPs | [65.55.56.206] | 
| IPs | [239.255.255.250] | 
| IPs | [109.74.196.143] | 
| Domains | [api.wipmania.net] [google.com] [supnewdmn.com] [api.wipmania.com] [t.baerr01.com] [t.joerv01.com] [tvrstrynyvwstrtve.com] [t.laeranat1.com] | 
| IP Addresses | [74.125.136.100] [91.233.244.106] [151.236.17.123] [65.55.56.206] [239.255.255.250] [109.74.196.143] | 
| Antivirus | [BackDoor.IRC.NgrBot.42] | 
| [Heuristic.LooksLike.Win32.SuspiciousPE.F] | |
| [PE:Win32.Mgr.b!1594784] | |
| [PE_RAMNIT.DEN] | |
| [Ramnit.O] | |
| [Virus.Nimnul.Win32.2] | |
| [Virus.Ramnit] | |
| [Virus.Win32.Dropper.k] | |
| [Virus.Win32.Nimnul.$a] |