April09.indd
Image Description
Common Information
Type Value
UUID 6a50508c-346b-45ae-9e4f-5af4e87f8bfa
Fingerprint a96b504ff8e91f8caaf00d2333350ace9ce360dcb159a6aaf6448e67a68a52ef
Analysis status DONE
Considered CTI value 1
Text language
Published April 1, 2009, 5:25 p.m.
Added to db April 16, 2024, 4:37 p.m.
Last updated Aug. 30, 2024, 11:25 p.m.
Headline April09.indd
Title April09.indd
Detected Hints/Tags/Attributes 224/3/129
Attributes
Details Type #Events CTI Value
Details Domain 404
www.virusbtn.com
Details Domain 10
www.scribd.com
Details Domain 12
www.cl.cam.ac.uk
Details Domain 167
www.ic3.gov
Details Domain 6
forum.tuts4you.com
Details Domain 1
free-viruscan.com
Details Domain 1
virus-quick-scan.com
Details Domain 1
antispyware-quick-scan.com
Details Domain 1
spyware-quickscan-2008.com
Details Domain 1
virus-quickscan-2008.com
Details Domain 1
spyware-quickscan-2009.com
Details Domain 1
virus-quickscan-2009.com
Details Domain 1
antivirus-quick-scan.com
Details Domain 1
av-xp2008.com
Details Domain 622
en.wikipedia.org
Details Domain 1
forums.symantec.com
Details Domain 3
www.lua.org
Details Domain 1
notahat.com
Details Domain 337
virusbtn.com
Details Domain 222
www.blackhat.com
Details Domain 132
www.rsaconference.com
Details Domain 19
www.computerforensicshow.com
Details Domain 84
www.infosec.co.uk
Details Domain 5
www.caro2009.com
Details Domain 11
eicar.org
Details Domain 3
seacure.it
Details Domain 3
www.seacure.it
Details Domain 64
www.nisc.org.uk
Details Domain 42
rst.org
Details Domain 113
www.usenix.org
Details Domain 40
www.hackerhalted.com
Details Domain 20
www.ecrimeresearch.org
Details Domain 30
www.antiphishing.org
Details Domain 56
www.maawg.org
Details Domain 9
www.inbox-outbox.com
Details Domain 48
www.ceas.cc
Details Domain 40
www.ietf.org
Details Domain 1
taugh.com
Details Domain 1
simone.iecc.com
Details Domain 1
iecc.com
Details Domain 1
lists.iecc.com
Details Email 28
john.hawes@virusbtn.com
Details Email 330
editorial@virusbtn.com
Details Email 1
20090319221036.7794.qmail@simone.iecc.com
Details Email 1
johnl@taugh.com
Details Email 1
helen@virusbtn.com
Details File 3
ucam-cl-tr-746.pdf
Details File 2
annualreports.aspx
Details File 748
kernel32.dll
Details File 533
ntdll.dll
Details File 1260
explorer.exe
Details File 40
ollydbg.exe
Details File 14
200812.pdf
Details File 14
200901.pdf
Details File 13
200902.pdf
Details File 12
200903.pdf
Details File 7
view.exe
Details File 1
scan4.exe
Details File 1
sl32.exe
Details File 1
gpls32.exe
Details File 1
braviax.exe
Details File 1
buritos.exe
Details File 1
%system%winivstr.exe
Details File 1
garo.sys
Details File 12
beep.sys
Details File 1
karina.dat
Details File 12
scan.exe
Details File 1
winivstr.exe
Details File 27
schedule.xml
Details File 384
www.inf
Details File 1
rfc4871.txt
Details md5 1
3a35c64942d7aa9dec056277e50741da
Details IPv4 1
79.135.167.18
Details IPv4 2
7.6.4.1
Details IPv4 1
10.0.0.169
Details IPv4 1
12.0.11.5
Details IPv4 6
6.0.9.1
Details IPv4 4
19.2.0.0
Details IPv4 12
8.11.6.63
Details IPv4 2
6.0.0.16
Details Url 149
http://www.virusbtn.com/prevalence/.
Details Url 1
http://www.scribd.com/doc/13731776/tracking-ghostnet-
Details Url 1
http://www.cl.cam.ac.uk/techreports/ucam-cl-tr-746.pdf
Details Url 1
http://www.ic3.gov/media/annualreports.aspx
Details Url 9
http://www.virusbtn.com/pdf/magazine/2008
Details Url 9
http://www.virusbtn.com/pdf/magazine/2009
Details Url 1
http://forum.tuts4you.com/.
Details Url 1
http://79.135.167.18/scan4.exe
Details Url 1
http://79.135.167.18/sl32.exe
Details Url 1
http://79.135.167.18/gpls32.exe
Details Url 1
http://virus-quick-scan.com/?wmid=1062&l=12&it=2&s=1
Details Url 1
http://antispyware-quick-scan.com
Details Url 1
http://spyware-quickscan-2008.com
Details Url 1
http://virus-quickscan-2008.com
Details Url 1
http://spyware-quickscan-2009.com
Details Url 1
http://virus-quickscan-2009.com
Details Url 1
http://antivirus-quick-scan.com
Details Url 1
http://av-xp2008.com/images
Details Url 32
http://www.virusbtn.com/pdf
Details Url 1
http://en.wikipedia.org/wiki/rogue_software.
Details Url 1
https://forums.symantec.com/t5/blogs
Details Url 3
http://www.lua.org/.
Details Url 1
http://notahat.com/posts/28/.
Details Url 20
http://www.virusbtn.com/vb100/about/schedule.xml
Details Url 138
http://www.virusbtn.com/virusbulletin/subscriptions
Details Url 290
http://www.virusbtn.com
Details Url 134
http://www.blackhat.com/.
Details Url 6
http://www.rsaconference.com/2009/us/.
Details Url 17
http://www.computerforensicshow.com/.
Details Url 74
http://www.infosec.co.uk/.
Details Url 4
http://www.caro2009.com/.
Details Url 7
http://eicar.org/conference/.
Details Url 3
http://www.seacure.it/.
Details Url 59
http://www.nisc.org.uk/.
Details Url 37
http://conference.fi
Details Url 10
http://www.usenix.org/events/sec09/.
Details Url 24
http://www.hackerhalted.com/.
Details Url 2
http://www.virusbtn.com/conference/vb2009/.
Details Url 13
http://www.ecrimeresearch.org/.
Details Url 7
http://www.rsaconference.com/2009/europe/.
Details Url 10
http://www.antiphishing.org/.
Details Url 43
http://www.maawg.org/.
Details Url 9
http://www.inbox-outbox.com/.
Details Url 36
http://www.ceas.cc/.
Details Url 1
http://www.ietf.org/rfc/rfc4871.txt
Details Windows Registry Key 41
HKLM\System\CurrentControlSet\Control\Session
Details Windows Registry Key 25
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft
Details Windows Registry Key 36
HKEY_CURRENT_USER\Software\Microsoft\Windows
Details Windows Registry Key 49
HKLM\Software\Microsoft\Windows