IP Location: Canada - ASN-CIPHERKEY Exchange Corp Routing
IP 204.239.157.2
[flame.blaze.ca]
AS25668
Name Server: flame.blaze.ca | spark.blaze.ca
Registrant/Email Registrant: Gordon Russell Limited/gr@gordonrussell.com
hxxp://www.gordonrussell.com/Images/sp.exe md5sum ===> b5d19c17858339a3d49eb6d41bce00e0
http://www.virustotal.com/file-scan/report.html?id=8ec5998a682d062469f1c03099f63a34b4298841d0691e9787b566c8ab79f200-1320949007VT
25/43 (58.1%)
relatedIP Location: United States - DREAMHOST-AS
IP 69.163.176.89
[apache2-kip.vikings.dreamhost.com]
AS26347
Name Server: NS1.DREAMHOST.COM | NS2.DREAMHOST.COM | NS3.DREAMHOST.COM
Registrant/Email Registrant: Kim Johnstone/StarbuckQAF@netscape.net
hxxp://idina-here.com/fans/gallery/themes/fruity/themes.php
relatedIP Location: United States - GODADDY
IP 184.168.230.128
[p3nlhg180c1180.shr.prod.phx3.secureserver.net]
AS26496
Name Server: ns07.domaincontrol.com | ns08.domaincontrol.com
Registrant/Email Registrant: Myrtle Beach Screen Printing/beachscreenprint@aol.com
hxxp://myrtlebeachscreenprinting.com/images/config.php
IP Location: Kazakhstan - Kazakhtelecom
[ip214.gohost.kz]
AS9198
hxxp://95.57.120.214/~zxc/de/2/gate.php
IP Location: Poland - ASTER-CITY-CABLE-AS
IP 82.210.157.9
[poczta.orgmasz.pl]
AS12476
Name Server: NS1.STOSPORTS.COM | NS2.STOSPORTS.COM
Registrant/Email Registrant: Emerenciana Abrego/baron@fxmail.net
hxxp://sweetplex.com/wonderful.php