File Analyzer: 1b7060a0177083d193db7304f7ca9619bab7a035
File SHA1: 1b7060a0177083d193db7304f7ca9619bab7a035
File MD5 : eaae8b9fd12e76be5c74359b648aa813
File Type: PE32 executable for MS Windows (GUI) Intel 80386 32-bit
Additonal Info: PeCompact 2.xx –> BitSum Technologies
Source: Generated
Date: Sat Jul 31 07:07:25 MYT 2010
Final Score: 11
Possible Malware: YES
Scanner Information:-
Trojan.Win32.Buzus.ewpn
a variant of Win32/TrojanDropper.ErPack trojan
#– Files Created: –
#– Registry Created: –
[SOFTWARE]
[SYSTEM]
[SECURITIES]
[DEFAULT]
[NTUSER]
#– Malicious Running Processes: –
#– Malicious Processes Dump: –
cmd.exe::PID=1368:1376::UID=0::Action=
cmd.exe::PID=1420:1428::UID=0::Action=
#– Malware Traffic – DNS: –
#– Malware Traffic – Connections: –
#– Malware Traffic – www: –
#– Static Header: –
#– Screenshots: –