zeus trojans (and other related malmare):
hxxp://bhostonline.com/loaderadv562.exe
md5sum ===> afe0c42bd76163762ac798938046743a
for:
hxxp://96.9.183.149/app21.bin
hxxp://174.36.237.84/app21s.bin incoming?
hxxp://bhostonline.com/loaderadv563.exe
md5sum ===> 5b12cf0e2439517af6af8c8ba6b0f7b4
for
hxxp://174.36.237.84/app21s.bin