MD5 | 4480cb28f16b46ea6e1195890b724c29 |
SHA1 | bf11cab953376a1d75ded3f147525ae57d2f636a |
Filename | Worm.Win32.Leave.b |
IPs | [74.6.50.24] |
IPs | [129.7.1.66] |
IPs | [64.136.20.44] |
IPs | [69.172.201.208] |
IPs | [192.5.41.209] |
IPs | [77.232.72.47] |
IPs | [193.67.79.202] |
IPs | [164.67.62.194] |
Domains | [altavista.com] [Tick.UH.EDU] [l33t.5u.com] [love50gb.50megs.com] [h0h0h0.spites.com] [ntp2.usno.navy.mil] [h0h0h0.home.dk3.com] [slinky.50megs.com] [bababuhtml.50megs.com] [tonyjameshanks-sux.50megs.com] |
IP Addresses | [74.6.50.24] [129.7.1.66] [64.136.20.44] [69.172.201.208] [192.5.41.209] [77.232.72.47] [193.67.79.202] [164.67.62.194] |
Antivirus | [Artemis!4480CB28F16B] |
[Generic.Win32.4480cb28f1!MD] | |
[HEUR/Malware.QVM11.Gen] | |
[I-Worm/Leave] | |
[I-Worm/Leave.b] | |
[Leave.CW] | |
[Mal/IRCBot-B] | |
[PE:Trojan.Win32.Generic.13864EA1!327569057] | |
[Trojan.Win32.Leave.frxv] |