| MD5 | a5808c4173ce2dbd3a2f7a5806e1e359 |
| SHA1 | 272df6c89d520a7281e8bff5a62bc33805e98085 |
| Filename | user.pdf ___________________________________________.exe |
| IPs | [208.91.197.241] |
| IPs | [50.63.202.44] |
| IPs | [174.36.138.26] |
| IPs | [208.91.197.27] |
| IPs | [50.7.229.4] |
| IPs | [66.151.181.49] |
| Domains | [classspeak.net] [thickniece.net] [classniece.net] [thickwrite.net] [classwrite.net] [thickoclock.net] [classoclock.net] [movementshore.net] [outsideshore.net] [movementwritten.net] |
| IP Addresses | [208.91.197.241] [50.63.202.44] [174.36.138.26] [208.91.197.27] [50.7.229.4] [66.151.181.49] |
| Antivirus | [Agent.BELJE] |
| [BDS/Zegost.Gen4] | |
| [Packed.Win32.Hrup.2!O] | |
| [RDN/Autorun.worm!dn] | |
| [Trj/Genetic.gen] | |
| [Troj/Wonton-FE] | |
| [Trojan.Dynamer.AC3] | |
| [Trojan.FBAccountLock] | |
| [Trojan.Zbot.WHE] | |
| [W32.Clod705.Trojan.df7e] |