Packed MD5 5799ab6538d8a0210dc261d612426595 
Priority
First 01/05/2012 
Last 02/04/2012 
Count  
History  
Unpacked MD5 271367941169a8c58cfbd366a912dbf5  
AV Hits 40 41 
AV Count 32 
CC Servers  
DNS Lookups US:microsoft.com 
Failed Connects  
AV Name AhnLab-V3:Virut.B, AntiVir:Virut.AX, Authentium:MISSED, Avast:_Virtob, AVG:Virut, BitDefender:Virtob.8.Gen, CAT-QuickHeal:Virut.E, ClamAV:Virut-54, DrWeb:Virut.30, eSafe:MISSED, eTrust-Vet:Virut.7115, Ewido:MISSED, FileAdvisor:MISSED, Fortinet:Virut.AV, F-Prot:Virut.7116, F-Secure:Virtob.8.Gen, Ikarus:Virut, Kaspersky:Virut.av, McAfee:Virut.gen.a, Microsoft:Virut.AC, NOD32v2:MISSED, Norman:Virut.W, Panda:Virutas.FG, Prevx1:MISSED, Rising:Virut.an, Sophos:Virut-W, Sunbelt:MISSED, Symantec:Virut.W, TheHacker:Virut.av, VBA32:Virut.2, VirusBuster:Virut.Gen.4, Webwasher-Gateway:MISSED  
WinXP Files  
WinXP Processes  
WinXP Registries  
WinXP Ports  
Win-2Kf Files  
Win-2Kf Processes DLLHOST.EXE  
Win-2Kf Registries  
Win-2Kf Ports 1027  
Create Events  
Create Files  
Create RegKeys  
Open RegKeys SOFTWARE\Microsoft\Updates\Windows 2000\SP5\KB823980,SOFTWARE\Microsoft\Updates\Windows XP\SP1\KB823980,SOFTWARE\Microsoft\Updates\Windows XP\SP2\KB823980 
Service Starts RpcPatch 
Service Deletes RpcPatch,RpcTftpd 
Service Creates  
Cluster  
Cluster Confidence  
Packer ID1 none 
Packer ID2 none 
Embedded DNS microsoft.com  
String Count 64 
String Link text
String MD5 b17bd61b857baff6bc0c358a156cdf12 
Timerange 365 Days 
Unpack Status unknown (unpacked : 0 : Unpacking Provided Binary. (Code,Data) = (64.62%, 22.08%)) 
Countries
Unpacked Link  
Callgraph  
API Resolution  
Comment none