| MD5 | 431d2ac68d63bbf30e3b5636ca1ae823 |
| SHA1 | 69065a2403a88da8b9dc9c2cce1602300c8ca6fb |
| Filename | 2014-06-04-Infinity-EK-malware-payload.exe |
| IPs | [65.55.58.201] |
| IPs | [212.45.32.250] |
| IPs | [93.94.224.67] |
| IPs | [46.249.47.127] |
| IPs | [91.213.8.35] |
| IPs | [5.187.2.22] |
| Domains | [microsoft.com] [jpprukgtbfni.com] [zlmbpkfrin.com] [dduxkwxvoz.com] [zmyftlvqwga.com] [0.pool.ntp.org] [1.pool.ntp.org] [2.pool.ntp.org] [qcmbartuop.bit] |
| IP Addresses | [65.55.58.201] [212.45.32.250] [93.94.224.67] [46.249.47.127] [91.213.8.35] [5.187.2.22] |
| Antivirus | [HEUR/Malware.QVM20.Gen] |
| [HW32.Pedka.rquu] | |
| [PE:Malware.XPACK-HIE/Heur!1.9C48] | |
| [SHeur4.BWIZ] | |
| [Spyware.Zbot.VXGen] | |
| [Suspicious_Gen4.GJJBD] | |
| [Troj/ZBot-IJN] |