MD5 | 431d2ac68d63bbf30e3b5636ca1ae823 |
SHA1 | 69065a2403a88da8b9dc9c2cce1602300c8ca6fb |
Filename | 2014-06-04-Infinity-EK-malware-payload.exe |
IPs | [65.55.58.201] |
IPs | [212.45.32.250] |
IPs | [93.94.224.67] |
IPs | [46.249.47.127] |
IPs | [91.213.8.35] |
IPs | [5.187.2.22] |
Domains | [microsoft.com] [jpprukgtbfni.com] [zlmbpkfrin.com] [dduxkwxvoz.com] [zmyftlvqwga.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [qcmbartuop.bit] |
IP Addresses | [65.55.58.201] [212.45.32.250] [93.94.224.67] [46.249.47.127] [91.213.8.35] [5.187.2.22] |
Antivirus | [HEUR/Malware.QVM20.Gen] |
[HW32.Pedka.rquu] | |
[PE:Malware.XPACK-HIE/Heur!1.9C48] | |
[SHeur4.BWIZ] | |
[Spyware.Zbot.VXGen] | |
[Suspicious_Gen4.GJJBD] | |
[Troj/ZBot-IJN] |