See: http://www.malware.com.br/cgi/submit?action=stats&s=domains (mentioned there) https://www.virustotal.com/nl/url/ff7f36f03ec1e1942e0f3345ba528f6fb19bb645921c7ca1e26927becf38e271/analysis/ and http://urlquery.net/report.php?id=7047359 on other files from there IDS alert for ET INFO Exectuable Download from dotted-quad Host Found by Comodo Cloud checking. SHA1: 833906853cdca04d2d4792c6b7dbd345e17d7fd2 Known as threat: http://www.threatexpert.com/files/qq.exe.html See: http://file-intelligence.comodo.com/windows-process-virus-malware/exe/QQ and http://www.shouldiblockit.com/qq.exe-83e010be4dae7a7f34806921ac96b673.aspx
polonus