IP Location: China Langfang Development Area Huarui Xintong Network
IP 119.255.23.16
AS4837
hxxp://www.softkill.in/server/config.bin
md5sum ===> 5ede4de4539bdae744cf3f7f3ca9d657
SHA256 ===> c7643f8c37478d081c914a7c668dd7a65cc4dbcf2e8b4b4bcfa6f4947dea400d
hxxp://www.softkill.in/server/bot.exe
md5sum ===> 1bca13f5e6aa61d157ada561ef2cd06f
SHA256 ===> 25f671c26acd6b1cdaf23808a0999caf4cf345031e55b2232cc12d5d2d084f2a
http://www.virustotal.com/analisis/25f671c26acd6b1cdaf23808a0999caf4cf345031e55b2232cc12d5d2d084f2a-1271695068VT
27/40 (67.50%)
hxxp://www.softkill.in/server/gate.php
hxxp://popunserv.com/calc.xls
md5sum ===> 340c2afde2ac26fc89df9b997ea07cda
SHA256 ===> f541438b73e38e4becf841b4cd76fe0b7b6716e4c5773de4704680afee837c0c
hxxp://popunserv.com/1.php
(already listed, now online)
hxxp://www.lpozz.com/video_secret/az.ogg
md5sum ===> 9b5005d256380b81bffae88d29807c1e
SHA256 ===> 51378e9e531e1ca48b3f463b8ac1929dc64eef707e4ded473296ca60362bd5e5
hxxp://www.lpozz.com/odrstgvsl/in_12131.php