Home > malware > Malware Report: 62ef73a71b36dda87d2e0e26614d5d9dd9ae8f85

Malware Report: 62ef73a71b36dda87d2e0e26614d5d9dd9ae8f85

November 11th, 2009 xandora Leave a comment Go to comments

File SHA1: 62ef73a71b36dda87d2e0e26614d5d9dd9ae8f85
File MD5 : b079e921ad156817e84dfe1e80b16a7e
File Type: PE32 executable for MS Windows (GUI) Intel 80386 32-bit
Date: Wed Nov 11 01:01:48 MYT 2009
Possible Malware: YES

#– Files Created: –

/WINDOWS/Tasks/{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job

#– Registry Created: –

[SOFTWARE]
[SYSTEM]
[SECURITIES]
[DEFAULT]
[NTUSER]
+ [NTUSER\Software\TurboNet]
+ [NTUSER\Software\XML]

#– Malware Traffic – DNS: –

chatpartyline.com
new-search-zone.com

#– Malware Traffic – Connections: –

64.120.164.39.80
64.191.82.22.80

#– Malware Traffic – www: –

chatpartyline.com/resolution.php
new-search-zone.com/borders.php

#– Screenshots: –

Screen After 90 Seconds

Categories: malware Tags:
  1. No comments yet.
  1. No trackbacks yet.