Packed MD5 38ed850a0e32db83cfd95d996a802121 
Priority
First 06/10/2009 
Last 11/05/2009 
Count  
History  
Unpacked MD5 46990f37cd59de3059222fc3b79791d7  
AV Hits 34 35 
AV Count 32 
CC Servers  
DNS Lookups US:microsoft.com 
Failed Connects  
AV Name AhnLab-V3:Virut.B, AntiVir:Virut.AX, Authentium:Virut.7116, Avast:_Virtob, AVG:Nachi.A, BitDefender:Generic.22648, CAT-QuickHeal:Virut.Z, ClamAV:Virut-17, DrWeb:Virut.30, eSafe:MISSED, eTrust-Vet:Virut.7115, Ewido:MISSED, FileAdvisor:MISSED, Fortinet:Virut.AV, F-Prot:Nachi.A, F-Secure:Welchia.A, Ikarus:Virut.av, Kaspersky:Virut.av, McAfee:Nachi.a, Microsoft:Virut.AC, NOD32v2:MISSED, Norman:Virut.AG, Panda:Virutas.FG, Prevx1:MISSED, Rising:Virut.an, Sophos:Virut-W, Sunbelt:MISSED, Symantec:Virut.W, TheHacker:Virut.av, VBA32:Virut.2, VirusBuster:Nachi, Webwasher-Gateway:MISSED  
WinXP Files DLLHOST.EXE, SVCHOST.EXE  
WinXP Processes CMD.EXE, CSRSS.EXE, DLLHOST.EXE, EXPLORER.EXE, LSASS.EXE, MSMSGS.EXE, SERVICES.EXE, SPOOLSV.EXE, SVCHOST.EXE, WINLOGON.EXE, defrag.exe, DfrgFat.exe  
WinXP Registries  
WinXP Ports 1031  
Win-2Kf Files  
Win-2Kf Processes DLLHOST.EXE  
Win-2Kf Registries  
Win-2Kf Ports 1027  
Create Events  
Create Files  
Create RegKeys  
Open RegKeys  
Service Starts  
Service Deletes  
Service Creates  
Cluster  
Cluster Confidence  
Packer ID1 tElock 
Packer ID2  
Embedded DNS  
String Count 64 
String Link text
String MD5 b17bd61b857baff6bc0c358a156cdf12 
Timerange 365 Days 
Unpack Status unknown (unpacked : 0 : Unpacking Provided Binary. (Code,Data) = (77.57%, 17.04%)) 
Countries
Unpacked Link  
Callgraph  
API Resolution  
Comment none