| MD5 | b20694aa43ed58b3550777dcf3adb102 | 
| SHA1 | 8f197145e65a8195e2eba22a984a12485efc4937 | 
| Filename | EncryptedMessage.exe | 
| IPs | [192.254.150.110] | 
| Domains | [carmine.warsheet.com] [deswarlist.warsheet.com] | 
| IP Addresses | [192.254.150.110] | 
| Antivirus | [BackDoor-FJW] | 
| [Backdoor.Kelihos!5376] | |
| [Backdoor.Win32.Kelihos.kem] | |
| [Heur.Trojan.Hlux] | |
| [Kryptik.OFO] | |
| [Packed.Win32.Katusha.y] | |
| [PSW.Generic10.BTRI] | |
| [PWS:Win32/Fareit] | |
| [RDN/Generic.tfr!e] | |
| [TR/Graftor.CG] |