Packed MD5 d9cb288f317124a0e63e3405ed290765 
Priority 15 
First 01/06/2012 
Last 02/10/2012 
Count  
History  
Unpacked MD5 45603a001c922dcef815b225f86556ff  
AV Hits
AV Count 32 
CC Servers  
DNS Lookups US:www.maxmind.com :www.getmyip.org US:checkip.dyndns.org EU:getmyip.co.uk EU:checkip.dyndns.org 
Failed Connects DE:131.220.6.26:80 US:208.43.124.51:80 EU:78.40.35.130:80 EU:91.198.22.70:80 US:216.146.39.70:80 94.102.15.106:3533 UA:212.111.205.114:3598 
AV Name AhnLab-V3:MISSED, AntiVir:MISSED, Authentium:MISSED, Avast:MISSED, AVG:MISSED, BitDefender:MISSED, CAT-QuickHeal:MISSED, ClamAV:MISSED, DrWeb:MISSED, eSafe:MISSED, eTrust-Vet:MISSED, Ewido:MISSED, FileAdvisor:MISSED, Fortinet:MISSED, F-Prot:MISSED, F-Secure:MISSED, Ikarus:MISSED, Kaspersky:MISSED, McAfee:MISSED, Microsoft:MISSED, NOD32v2:MISSED, Norman:MISSED, Panda:MISSED, Prevx1:MISSED, Rising:MISSED, Sophos:MISSED, Sunbelt:MISSED, Symantec:MISSED, TheHacker:MISSED, VBA32:MISSED, VirusBuster:MISSED, Webwasher-Gateway:MISSED  
WinXP Files  
WinXP Processes  
WinXP Registries  
WinXP Ports  
Win-2Kf Files  
Win-2Kf Processes  
Win-2Kf Registries HKEY_LOCAL_MACHINE@...Microsoft\DownloadManager, HKEY_USERS@...InternetSettings\5.0, HKEY_USERS@...InternetSettings\Connections, HKEY_LOCAL_MACHINE@...Microsoft\\DownloadManager, HKEY_USERS@...InternetSettings\\5.0, HKEY_USERS@...InternetSettings\\Connections  
Win-2Kf Ports 9110, 1027  
Create Events  
Create Files  
Create RegKeys  
Open RegKeys SOFTWARE\Microsoft\Windows\CurrentVersion\Nls 
Service Starts  
Service Deletes  
Service Creates  
Cluster  
Cluster Confidence  
Packer ID1 UPX 
Packer ID2  
Embedded DNS http://www.getmyip.org, http://checkip.dyndns.org, .biz, .info, .org, .net, .com, w3.org, ask.com, msn.com, yahoo.com, google.com, baidu.com  
String Count 174 
String Link text
String MD5 8ae0b52b34ef584ecde20af8ae65746d 
Timerange 365 Days 
Unpack Status unknown (unpacked : 0 : Unpacking Provided Binary. (Code,Data) = (87.26%, 9.12%)) 
Countries 16 
Unpacked Link  
Callgraph  
API Resolution  
Comment none