March04_forPDF.pmd
Common Information
Type | Value |
---|---|
UUID | ae0a618b-2c9c-4f3c-81f3-bfef7f630b94 |
Fingerprint | 7a8588f4fea8d01f8061af792d756890591ce4f5d81a32a1e60f44af8392bc61 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Feb. 25, 2004, 4:35 p.m. |
Added to db | April 16, 2024, 3:19 p.m. |
Last updated | Aug. 30, 2024, 11:21 p.m. |
Headline | March04_forPDF.pmd |
Title | March04_forPDF.pmd |
Detected Hints/Tags/Attributes | 248/2/261 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 404 | www.virusbtn.com |
|
Details | Domain | 1 | ns.execulink.com |
|
Details | Domain | 368 | microsoft.com |
|
Details | Domain | 1 | myphoto.zip |
|
Details | Domain | 5 | centrum.cz |
|
Details | Domain | 1 | world-banking.org |
|
Details | Domain | 1 | rol.ru |
|
Details | Domain | 246 | mail.ru |
|
Details | Domain | 119 | yandex.ru |
|
Details | Domain | 1 | altern.org |
|
Details | Domain | 1 | oligarh.ru |
|
Details | Domain | 1 | e-e-mail.com |
|
Details | Domain | 1 | domenov.net |
|
Details | Domain | 14 | list.ru |
|
Details | Domain | 1 | btw.egold-hosting.com |
|
Details | Domain | 6 | mxs.mail.ru |
|
Details | Domain | 1 | mx1.yandex.ru |
|
Details | Domain | 1 | mxd.rambler.ru |
|
Details | Domain | 1 | relay.hotbox.ru |
|
Details | Domain | 1 | mail.xaker.ru |
|
Details | Domain | 1 | mail.xakep.ru |
|
Details | Domain | 1 | pop.btw.egold-hosting.com |
|
Details | Domain | 1 | pop3.rambler.ru |
|
Details | Domain | 3 | pop.mail.ru |
|
Details | Domain | 14 | smtp.mail.ru |
|
Details | Domain | 1 | pop.domenov.net |
|
Details | Domain | 1 | smtp.domenov.net |
|
Details | Domain | 1 | ftp.calkopt.narod.ru |
|
Details | Domain | 1 | ftp.world-banking.org |
|
Details | Domain | 1 | ftp.pcihotup.com |
|
Details | Domain | 1 | fixletterop.com |
|
Details | Domain | 1 | mail-technic.com |
|
Details | Domain | 1 | secure.timebase.us |
|
Details | Domain | 1 | irc.wonka.net |
|
Details | Domain | 2 | www.e-gold.com |
|
Details | Domain | 11 | ibm.com |
|
Details | Domain | 158 | aol.com |
|
Details | Domain | 51 | msn.com |
|
Details | Domain | 287 | yahoo.com |
|
Details | Domain | 179 | hotmail.com |
|
Details | Domain | 3 | mm.zip |
|
Details | Domain | 3 | www.sco.com |
|
Details | Domain | 397 | www.microsoft.com |
|
Details | Domain | 5 | ad.doubleclick.net |
|
Details | Domain | 3 | phx.corporate-ir.net |
|
Details | Domain | 2 | ad.fastclick.net |
|
Details | Domain | 3 | secure.nai.com |
|
Details | Domain | 2 | ads.fastclick.net |
|
Details | Domain | 8 | securityresponse.symantec.com |
|
Details | Domain | 2 | ar.atwola.com |
|
Details | Domain | 3 | service1.symantec.com |
|
Details | Domain | 2 | atdmt.com |
|
Details | Domain | 115 | sophos.com |
|
Details | Domain | 2 | avp.ch |
|
Details | Domain | 2 | spd.atdmt.com |
|
Details | Domain | 5 | avp.com |
|
Details | Domain | 128 | support.microsoft.com |
|
Details | Domain | 6 | avp.ru |
|
Details | Domain | 45 | symantec.com |
|
Details | Domain | 2 | awaps.net |
|
Details | Domain | 2 | update.symantec.com |
|
Details | Domain | 2 | banner.fastclick.net |
|
Details | Domain | 2 | updates.symantec.com |
|
Details | Domain | 2 | banners.fastclick.net |
|
Details | Domain | 5 | us.mcafee.com |
|
Details | Domain | 6 | ca.com |
|
Details | Domain | 13 | vil.nai.com |
|
Details | Domain | 2 | click.atdmt.com |
|
Details | Domain | 2 | viruslist.ru |
|
Details | Domain | 2 | clicks.atdmt.com |
|
Details | Domain | 18 | windowsupdate.microsoft.com |
|
Details | Domain | 2 | dispatch.mcafee.com |
|
Details | Domain | 3 | www.avp.ch |
|
Details | Domain | 2 | download.mcafee.com |
|
Details | Domain | 5 | www.avp.com |
|
Details | Domain | 18 | download.microsoft.com |
|
Details | Domain | 5 | www.avp.ru |
|
Details | Domain | 2 | downloads.microsoft.com |
|
Details | Domain | 2 | www.awaps.net |
|
Details | Domain | 2 | engine.awaps.net |
|
Details | Domain | 10 | www.ca.com |
|
Details | Domain | 3 | fastclick.net |
|
Details | Domain | 2 | www.fastclick.net |
|
Details | Domain | 23 | f-secure.com |
|
Details | Domain | 79 | www.f-secure.com |
|
Details | Domain | 2 | ftp.f-secure.com |
|
Details | Domain | 8 | www.kaspersky.ru |
|
Details | Domain | 4 | ftp.sophos.com |
|
Details | Domain | 103 | www.mcafee.com |
|
Details | Domain | 64 | go.microsoft.com |
|
Details | Domain | 2 | liveupdate.symantec.com |
|
Details | Domain | 2 | www.my-etrust.com |
|
Details | Domain | 2 | mast.mcafee.com |
|
Details | Domain | 26 | www.nai.com |
|
Details | Domain | 42 | mcafee.com |
|
Details | Domain | 3 | www.networkassociates.com |
|
Details | Domain | 2 | media.fastclick.net |
|
Details | Domain | 132 | www.sophos.com |
|
Details | Domain | 201 | msdn.microsoft.com |
|
Details | Domain | 216 | www.symantec.com |
|
Details | Domain | 2 | my-etrust.com |
|
Details | Domain | 604 | www.trendmicro.com |
|
Details | Domain | 8 | nai.com |
|
Details | Domain | 2 | www.viruslist.ru |
|
Details | Domain | 2 | networkassociates.com |
|
Details | Domain | 3 | www3.ca.com |
|
Details | Domain | 7 | office.microsoft.com |
|
Details | Domain | 41 | av-test.org |
|
Details | Domain | 1 | www.fokus.gmd.de |
|
Details | Domain | 2 | www.freedos.org |
|
Details | Domain | 1 | www.winternals.com |
|
Details | Domain | 3 | www.ntfs.com |
|
Details | Domain | 1 | ftp.centralcommand.com |
|
Details | Domain | 2 | www.knopper.net |
|
Details | Domain | 2 | www.kde.org |
|
Details | Domain | 1 | linux-ntfs.sourceforge.net |
|
Details | Domain | 1 | www.jankratochvil.net |
|
Details | Domain | 1 | www.amunra.co.uk |
|
Details | Domain | 1 | www.powerquest.com |
|
Details | Domain | 2 | www.asw.cz |
|
Details | Domain | 1 | www.nu2.nu |
|
Details | Domain | 1 | www.www.nu2.nu |
|
Details | Domain | 1 | www.sureboot.com |
|
Details | Domain | 337 | virusbtn.com |
|
Details | Domain | 5 | www.grisoft.com |
|
Details | Domain | 1 | grisoft.com |
|
Details | Domain | 2 | www.iegexpo.com |
|
Details | Domain | 8 | www.misti.com |
|
Details | Domain | 84 | www.infosec.co.uk |
|
Details | Domain | 20 | www.dallascon.com |
|
Details | Domain | 66 | www.eicar.org |
|
Details | Domain | 2 | www.cla.org |
|
Details | Domain | 222 | www.blackhat.com |
|
Details | Domain | 132 | www.rsaconference.com |
|
Details | Domain | 3 | www.technosecurity.com |
|
Details | Domain | 4 | www3.gartner.com |
|
Details | Domain | 59 | www.gocsi.com |
|
Details | Domain | 10 | misti.com |
|
Details | Domain | 6 | www.laas.fr |
|
Details | Domain | 1 | www.isc.org.cn |
|
Details | Domain | 3 | www.101techstrategies.com |
|
Details | Domain | 48 | www.ceas.cc |
|
Details | Domain | 24 | www.ftc.gov |
|
Details | 1 | security@microsoft.com |
||
Details | 1 | x1234512345@centrum.cz |
||
Details | 1 | shogunn@world-banking.org |
||
Details | 1 | spbstels@rol.ru |
||
Details | 1 | kollektinfo@mail.ru |
||
Details | 1 | davailave@yandex.ru |
||
Details | 1 | test799@altern.org |
||
Details | 1 | bank_acc@oligarh.ru |
||
Details | 1 | bank-acc@yandex.ru |
||
Details | 1 | trojan@e-e-mail.com |
||
Details | 1 | kollekt-info@mail.ru |
||
Details | 1 | info@domenov.net |
||
Details | 1 | collector100@mail.ru |
||
Details | 1 | geomir@centrum.cz |
||
Details | 1 | pizdatiy_email1@list.ru |
||
Details | 1 | anyname@btw.egold-hosting.com |
||
Details | 1 | 7653345@list.ru |
||
Details | 1 | support@domenov.net |
||
Details | 2 | w32.zaushka@mm.zip |
||
Details | 46 | editor@virusbtn.com |
||
Details | 1 | sales@grisoft.com |
||
Details | 330 | editorial@virusbtn.com |
||
Details | 4 | yhynes@misti.com |
||
Details | File | 1 | load32.exe |
|
Details | File | 1 | l32x.exe |
|
Details | File | 1 | dllreg.exe |
|
Details | File | 2 | %windir%\win.ini |
|
Details | File | 1 | %windir%\system.ini |
|
Details | File | 1 | vxdmgr32.exe |
|
Details | File | 1 | vxd32v.exe |
|
Details | File | 1 | rundllw.exe |
|
Details | File | 1 | dllxw.exe |
|
Details | File | 4 | windrv.exe |
|
Details | File | 1 | windrive.exe |
|
Details | File | 1 | winload.log |
|
Details | File | 21 | ns.exe |
|
Details | File | 229 | advapi32.dll |
|
Details | File | 533 | ntdll.dll |
|
Details | File | 15 | patch.exe |
|
Details | File | 1 | myphoto.zip |
|
Details | File | 4 | myphoto.jpg |
|
Details | File | 1 | guid32.dll |
|
Details | File | 1 | silentlog.txt |
|
Details | File | 1 | %windir%\vxdload.log |
|
Details | File | 1 | rundlln.sys |
|
Details | File | 1 | vxdload.log |
|
Details | File | 1 | winimg.exe |
|
Details | File | 1 | %windir%\rundllz.sys |
|
Details | File | 1 | email.dat |
|
Details | File | 1 | rundllx.sys |
|
Details | File | 2 | account.cfg |
|
Details | File | 1 | srk.asp |
|
Details | File | 3 | shimgapi.dll |
|
Details | File | 3 | taskmon.exe |
|
Details | File | 2 | the.bat |
|
Details | File | 3 | mm.zip |
|
Details | File | 3 | webcheck.dll |
|
Details | File | 1260 | explorer.exe |
|
Details | File | 5 | worm.exe |
|
Details | File | 58 | win.ini |
|
Details | File | 1 | cdrecord.html |
|
Details | File | 35 | malware.exe |
|
Details | File | 17 | ntfs.sys |
|
Details | File | 1 | 000028.php |
|
Details | File | 384 | www.inf |
|
Details | File | 1 | adult.htm |
|
Details | IPv4 | 1 | 199.166.6.2 |
|
Details | IPv4 | 1 | 207.150.192.12 |
|
Details | IPv4 | 1 | 64.191.107.10 |
|
Details | IPv4 | 619 | 0.0.0.0 |
|
Details | Url | 149 | http://www.virusbtn.com/prevalence/. |
|
Details | Url | 1 | https://www.e-gold.com/srk.asp |
|
Details | Url | 1 | http://www.fokus.gmd.de/research/cc/glone/employees |
|
Details | Url | 2 | http://www.freedos.org |
|
Details | Url | 1 | http://www.winternals.com |
|
Details | Url | 1 | http://www.ntfs.com |
|
Details | Url | 1 | ftp://ftp.centralcommand.com/antivirus |
|
Details | Url | 2 | http://www.knopper.net |
|
Details | Url | 1 | http://www.kde.org |
|
Details | Url | 1 | http://linux-ntfs.sourceforge.net |
|
Details | Url | 1 | http://www.jankratochvil.net |
|
Details | Url | 1 | http://www.amunra.co.uk/archives/000028.php |
|
Details | Url | 1 | http://www.powerquest.com/v2i/protector/sbe |
|
Details | Url | 2 | http://www.asw.cz |
|
Details | Url | 1 | http://www.nu2.nu/pebuilder |
|
Details | Url | 1 | http://www.www.nu2.nu |
|
Details | Url | 1 | http://www.sureboot.com |
|
Details | Url | 64 | http://www.virusbtn.com/. |
|
Details | Url | 3 | http://www.grisoft.com/. |
|
Details | Url | 2 | http://www.iegexpo.com/. |
|
Details | Url | 8 | http://www.misti.com/. |
|
Details | Url | 74 | http://www.infosec.co.uk/. |
|
Details | Url | 18 | http://www.dallascon.com/. |
|
Details | Url | 24 | http://www.eicar.org/. |
|
Details | Url | 2 | http://www.cla.org/. |
|
Details | Url | 134 | http://www.blackhat.com/. |
|
Details | Url | 39 | http://www.rsaconference.com/. |
|
Details | Url | 3 | http://www.technosecurity.com/. |
|
Details | Url | 3 | http://www3.gartner.com/. |
|
Details | Url | 4 | http://www.gocsi.com |
|
Details | Url | 3 | http://www.laas.fr/sec2004 |
|
Details | Url | 52 | http://www.gocsi.com/. |
|
Details | Url | 1 | http://www.isc.org.cn/. |
|
Details | Url | 3 | http://www.101techstrategies.com/. |
|
Details | Url | 36 | http://www.ceas.cc/. |
|
Details | Url | 26 | http://www.sophos.com |
|
Details | Url | 1 | http://www.ftc.gov/opa/2004/01/adult.htm |
|
Details | Windows Registry Key | 16 | HKLM\Software |
|
Details | Windows Registry Key | 49 | HKLM\Software\Microsoft\Windows |
|
Details | Windows Registry Key | 14 | HKLM\Software\Microsoft |
|
Details | Windows Registry Key | 36 | HKCU\Software |
|
Details | Windows Registry Key | 1 | HKCU\Software\Far\Plugins\FTP\Hosts |
|
Details | Windows Registry Key | 1 | HKCU\Mirabilis\ICQ\Owners |
|
Details | Windows Registry Key | 1 | HKLM\Software\SARS |
|
Details | Windows Registry Key | 11 | HKLM\Software\Microsoft\Windows\CurrentVersion |
|
Details | Windows Registry Key | 26 | HKEY_LOCAL_MACHINE\Software\Microsoft\Windows |
|
Details | Windows Registry Key | 2 | HKEY_CURRENT_USER\Software\Microsft\Windows |
|
Details | Windows Registry Key | 21 | HKEY_CLASSES_ROOT\CLSID |