| Packed MD5 | 89bedfb6e4e65ccff8a83826ea358ce5 |
| Priority | 0 |
| First | 06/28/2008 |
| Last | 06/28/2008 |
| Count | 2 |
| History | 2 hits: 06-28 to 06-28 |
| Unpacked MD5 | |
| AV Hits | 19 |
| AV Count | 32 |
| CC Servers | 69.247.147.113:12351 69.247.147.113:13001 |
| DNS Lookups | US:chat-shqip.org US:w3bs.chat-shqip.org |
| Failed Connects | US:69.247.147.113:13001 |
| AV Name | AhnLab-V3:MISSED, AntiVir:Virut.AX, Authentium:MISSED, Avast:_Virut, AVG:Virut, BitDefender:MISSED, CAT-QuickHeal:MISSED, ClamAV:Virut.Gen.C, DrWeb:Virut.5, eSafe:MISSED, eTrust-Vet:MISSED, Ewido:MISSED, FileAdvisor:MISSED, Fortinet:Virut.fam, F-Prot:MISSED, F-Secure:Virut.N, Ikarus:Virut.av, Kaspersky:MISSED, McAfee:Virut, Microsoft:Virut.AF, NOD32v2:Virut.Q, Norman:Virut.N, Panda:MISSED, Prevx1:MISSED, Rising:Virut.GEN, Sophos:MISSED, Sunbelt:MISSED, Symantec:Virut.W, TheHacker:Virut.Q, VBA32:Virut.av, VirusBuster:MISSED, Webwasher-Gateway:Virut.AX |
| WinXP Files | iexplorer.exe |
| WinXP Processes | CMD.EXE, CSRSS.EXE, EXPLORER.EXE, iexplorer.exe, LSASS.EXE, MSMSGS.EXE, SERVICES.EXE, SPOOLSV.EXE, SVCHOST.EXE, WINLOGON.EXE |
| WinXP Registries | HKEY_LOCAL_MACHINE@...CurrentVersion\RunServices, HKEY_USERS@...CurrentVersion\RunOnce |
| WinXP Ports | 1035, 12045, 1544, 1864, 21151, 2135, 2183, 2283, 2503, 2545, 2558, 2617, 2834, 3080, 3245, 3558, 4223, 4224, 4225, 4226, 4227, 4228, 4229, 4230, 4231, 4232, 4233, 4234, 4235, 4236, 4237, 4238, 4239, 4240, 4241, 4242, 4244, 4245, 4246, 4247, 4248, 4249, 4250, 4251, 4252, 4253, 4254, 4255, 4256, 4257, 4258, 4259, 4260, 4261, 4262, 4263, 4264, 4265, 4266, 4267, 4268, 4269, 4270, 4271, 4272, 4273, 4274, 4275, 4276, 4277, 4278, 4279, 4280, 4281, 4282, 4283, 4284, 4285, 4286, 4287, 4288, 4289, 4290, 4291, 4292, 4293, 4294, 4295, 4296, 4297, 4298, 4299, 4300, 4301, 4302, 4303, 4304, 4305, 4306, 4307, 4308, 4309, 4310, 4311, 4312, 4313, 4314, 4600, 4748, 4888 |
| Win-2Kf Files | |
| Win-2Kf Processes | iexplorer.exe |
| Win-2Kf Registries | HKEY_LOCAL_MACHINE@...CurrentVersion\\RunServices, HKEY_USERS@...CurrentVersion\\Run |
| Win-2Kf Ports | 1030, 12045, 2698, 2699, 2700, 2701, 2702, 2703, 2704, 2705, 2706, 2707, 2708, 2709, 2710, 2711, 2712, 2713, 2714, 2715, 2716, 2717, 2718, 2719, 2720, 2721, 2722, 2723, 2724, 2725, 2726, 2727, 2728, 2729, 2730, 2731, 2732, 2733, 2734, 2735, 2736, 2737, 2738, 2739, 2740, 2741, 2742, 2743, 2744, 2745, 2746, 2747, 2748, 2749, 2750, 2751, 2752, 2753, 2754, 2755, 2756, 2757, 4386 |
| Create Events | |
| Create Files | |
| Create RegKeys | |
| Open RegKeys | |
| Service Starts | |
| Service Deletes | |
| Service Creates | |
| Cluster | |
| Cluster Confidence | |
| Packer ID1 | none |
| Packer ID2 | none |
| Embedded DNS | |
| String Count | |
| String Link | text |
| String MD5 | |
| Timerange | 365 Days |
| Unpack Status | unknown () |
| Countries | 1 |
| Unpacked Link | none[none] |
| Callgraph | none:none |
| API Resolution | |
| Comment | none |