| Packed MD5 | 8f367186c33dff8d8b6033dd8b372778 |
| Priority | 19 |
| First | 01/07/2008 |
| Last | 06/25/2008 |
| Count | 94 |
| History | 94 hits: 12-27 to 06-25 |
| Unpacked MD5 | |
| AV Hits | 14 |
| AV Count | 32 |
| CC Servers | 67.19.50.66:7000 222.177.11.165:7000 218.25.36.7:7000 209.250.232.240:7000 218.93.14.236:7000 61.185.73.17:7000 211.96.97.44:7000 210.217.196.11:7000 |
| DNS Lookups | US:scorti1.dns2go.com CN:scorti1.dns2go.com KR:scorti1.dns2go.com FR:members.lycos.co.uk |
| Failed Connects | US:67.19.50.66:7000 US:209.250.232.240:7000 CN:218.25.36.7:7000 US:208.101.48.210:7000 CN:222.177.11.165:7000 CN:218.93.14.236:7000 CN:211.96.97.44:7000 KR:210.217.196.11:7000 US:65.23.35.204:7000 |
| AV Name | AhnLab-V3:MISSED, AntiVir:TRCrypt.XPACK.Gen, Authentium:MISSED, Avast:MISSED, AVG:RBot.AX, BitDefender:MISSED, CAT-QuickHeal:SdBot.gen, ClamAV:PUA.Packed.Themida, DrWeb:MISSED, eSafe:MISSED, eTrust-Vet:ForBot.TW, Ewido:MISSED, FileAdvisor:MISSED, Fortinet:SDBot.FOG!tr.bdr, F-Prot:MISSED, F-Secure:Kolab.m, Ikarus:Generic.Sdbot, Kaspersky:Kolab.m, McAfee:MISSED, Microsoft:MISSED, NOD32v2:MISSED, Norman:MISSED, Panda:MISSED, Prevx1:DIMPY.WIN32VBSY.Q, Rising:MISSED, Sophos:MISSED, Sunbelt:SDBot, Symantec:Sdbot, TheHacker:Behav-Heuristic-064, VBA32:MISSED, VirusBuster:MISSED, Webwasher-Gateway:Crypt.XPACK.Gen |
| WinXP Files | msnnmaneger.exe, index.dat |
| WinXP Processes | CMD.EXE, CSRSS.EXE, EXPLORER.EXE, LSASS.EXE, MSMSGS.EXE, msnnmaneger.exe, SERVICES.EXE, SPOOLSV.EXE, SVCHOST.EXE, WINLOGON.EXE, defrag.exe, DfrgFat.exe |
| WinXP Registries | HKEY_LOCAL_MACHINE@...CurrentVersion\RunServices, HKEY_USERS@...CurrentVersion\RunOnce, HKEY_LOCAL_MACHINE@...CurrentVersion\\RunServices, HKEY_USERS@...CurrentVersion\\RunOnce |
| WinXP Ports | 1036, 1036, 18215, 1037, 15102, 1028, 1034, 12260, 1709, 1710, 2664, 2665, 2666, 2667, 2668, 2669, 2670, 2671, 2672, 2673, 2674, 2675, 2676, 2677, 2678, 2679, 2680, 2681, 2682, 2683, 2684, 2685, 2686, 2687, 2688, 2689, 2690, 2691, 2692, 2693, 2694, 2695, 2696, 2697, 2698, 1040, 18175, 1241, 1242, 1396, 1397, 1489, 1490, 1491, 1492, 1493, 1494, 1495, 1496, 1497, 1498, 1499, 1500, 1501, 1502, 1503, 1504, 1505, 8826, 18616, 5100, 2450, 7624, 16320, 1041, 1664, 1039, 12422, 16864, 21926, 1035, 21003, 2436, 2437, 2438, 2439, 2440, 2441, 2442, 2443, 2444, 2445, 2446, 2447, 2448, 2449, 2451, 2452, 2453, 2454, 2455, 2456, 2457, 2458, 2459, 2460, 2461, 2462, 2463, 2464, 2465, 2466, 2467, 2468, 2469, 2470, 2471, 2472, 2473, 2474, 2475, 2476, 2477, 2478, 2479, 2480, 2481, 2482, 2483, 2484, 2485, 2486, 2487, 2488, 2489, 2490, 2491, 2492, 2493, 2494, 2495, 2496, 2497, 2498, 2499, 2500, 2501, 2502, 2503, 2504, 2505, 2506, 2507, 2508, 2509, 2510, 2511, 2512, 2513, 2514, 2515, 2516, 2517, 2518, 2519, 2520, 2521, 2522, 2523, 2524, 2525, 2526, 2527, 2528, 2529, 2530, 2531, 2532, 2533, 2534, 2535, 1032, 1128, 1129, 1133, 1134, 1165, 1166, 1221, 1222, 1223, 1224, 1225, 1227, 1228, 1229, 1230, 1231, 1232, 1233, 1234, 1235, 1236, 1237, 1238, 1239, 1240, 1243, 1244, 1245, 1246, 1247, 1248, 1249, 1250, 4305, 1042, 14692, 1916, 1917, 1918, 1919, 1920, 1921, 1922, 1923, 1924, 1925, 1927, 1928, 1929, 1930, 1931, 1932, 1933, 1934, 1935, 1936, 1937, 1938, 1939, 1940, 1941, 1942, 1943, 1944, 1945, 1946, 1947, 1948, 1949, 1950, 1951, 1952, 1953, 1954, 1955, 1956, 1957, 1958, 1959, 1960, 1961, 1962, 1963, 1964, 1965, 1966, 1967, 1968, 1969, 1970, 1971, 1972, 1973, 1974, 1975, 1976, 1977, 1978, 1979, 1980, 1981, 1982, 1983, 1984, 1985, 1986, 1987, 1988, 1989, 1990, 1991, 1992, 1993, 1994, 1995, 1996, 1997, 1998, 1999, 2000, 3693, 20950, 5411 |
| Win-2Kf Files | |
| Win-2Kf Processes | msnnmaneger.exe, drwtsn32.exe |
| Win-2Kf Registries | HKEY_LOCAL_MACHINE@...CurrentVersion\\RunServices, HKEY_USERS@...CurrentVersion\\Run |
| Win-2Kf Ports | 1053, 18522, 7142, 1042, 18012, 1041, 12529, 1044, 6872, 1045, 1030, 1185, 1186, 1187, 1188, 1189, 1190, 1191, 1192, 1193, 1194, 1195, 1196, 1197, 1198, 1199, 1200, 1201, 1202, 1203, 1204, 1205, 1206, 1207, 1208, 1209, 1210, 1211, 1212, 1213, 1214, 16796, 1027, 16331, 1059, 12116, 1061, 2205, 1043, 4627 |
| Create Events | |
| Create Files | |
| Create RegKeys | |
| Open RegKeys | |
| Service Starts | |
| Service Deletes | |
| Service Creates | |
| Cluster | |
| Cluster Confidence | |
| Packer ID1 | none |
| Packer ID2 | none |
| Embedded DNS | |
| String Count | |
| String Link | text |
| String MD5 | |
| Timerange | 365 Days |
| Unpack Status | good (unpacked : 0 : Unpacking Provided Binary. (Code,Data) = (36.48%, 9.72%)) |
| Countries | 23 |
| Unpacked Link | 01a06977c4 [0] |
| Callgraph | ASM:Graph |
| API Resolution | 0% |
| Comment | none |