March04_forPDF.pmd
Image Description
Common Information
Type Value
UUID ae0a618b-2c9c-4f3c-81f3-bfef7f630b94
Fingerprint 7a8588f4fea8d01f8061af792d756890591ce4f5d81a32a1e60f44af8392bc61
Analysis status DONE
Considered CTI value 0
Text language
Published Feb. 25, 2004, 4:35 p.m.
Added to db April 16, 2024, 3:19 p.m.
Last updated Aug. 30, 2024, 11:21 p.m.
Headline March04_forPDF.pmd
Title March04_forPDF.pmd
Detected Hints/Tags/Attributes 248/2/261
Attributes
Details Type #Events CTI Value
Details Domain 404
www.virusbtn.com
Details Domain 1
ns.execulink.com
Details Domain 368
microsoft.com
Details Domain 1
myphoto.zip
Details Domain 5
centrum.cz
Details Domain 1
world-banking.org
Details Domain 1
rol.ru
Details Domain 246
mail.ru
Details Domain 119
yandex.ru
Details Domain 1
altern.org
Details Domain 1
oligarh.ru
Details Domain 1
e-e-mail.com
Details Domain 1
domenov.net
Details Domain 14
list.ru
Details Domain 1
btw.egold-hosting.com
Details Domain 6
mxs.mail.ru
Details Domain 1
mx1.yandex.ru
Details Domain 1
mxd.rambler.ru
Details Domain 1
relay.hotbox.ru
Details Domain 1
mail.xaker.ru
Details Domain 1
mail.xakep.ru
Details Domain 1
pop.btw.egold-hosting.com
Details Domain 1
pop3.rambler.ru
Details Domain 3
pop.mail.ru
Details Domain 14
smtp.mail.ru
Details Domain 1
pop.domenov.net
Details Domain 1
smtp.domenov.net
Details Domain 1
ftp.calkopt.narod.ru
Details Domain 1
ftp.world-banking.org
Details Domain 1
ftp.pcihotup.com
Details Domain 1
fixletterop.com
Details Domain 1
mail-technic.com
Details Domain 1
secure.timebase.us
Details Domain 1
irc.wonka.net
Details Domain 2
www.e-gold.com
Details Domain 11
ibm.com
Details Domain 158
aol.com
Details Domain 51
msn.com
Details Domain 287
yahoo.com
Details Domain 179
hotmail.com
Details Domain 3
mm.zip
Details Domain 3
www.sco.com
Details Domain 397
www.microsoft.com
Details Domain 5
ad.doubleclick.net
Details Domain 3
phx.corporate-ir.net
Details Domain 2
ad.fastclick.net
Details Domain 3
secure.nai.com
Details Domain 2
ads.fastclick.net
Details Domain 8
securityresponse.symantec.com
Details Domain 2
ar.atwola.com
Details Domain 3
service1.symantec.com
Details Domain 2
atdmt.com
Details Domain 115
sophos.com
Details Domain 2
avp.ch
Details Domain 2
spd.atdmt.com
Details Domain 5
avp.com
Details Domain 128
support.microsoft.com
Details Domain 6
avp.ru
Details Domain 45
symantec.com
Details Domain 2
awaps.net
Details Domain 2
update.symantec.com
Details Domain 2
banner.fastclick.net
Details Domain 2
updates.symantec.com
Details Domain 2
banners.fastclick.net
Details Domain 5
us.mcafee.com
Details Domain 6
ca.com
Details Domain 13
vil.nai.com
Details Domain 2
click.atdmt.com
Details Domain 2
viruslist.ru
Details Domain 2
clicks.atdmt.com
Details Domain 18
windowsupdate.microsoft.com
Details Domain 2
dispatch.mcafee.com
Details Domain 3
www.avp.ch
Details Domain 2
download.mcafee.com
Details Domain 5
www.avp.com
Details Domain 18
download.microsoft.com
Details Domain 5
www.avp.ru
Details Domain 2
downloads.microsoft.com
Details Domain 2
www.awaps.net
Details Domain 2
engine.awaps.net
Details Domain 10
www.ca.com
Details Domain 3
fastclick.net
Details Domain 2
www.fastclick.net
Details Domain 23
f-secure.com
Details Domain 79
www.f-secure.com
Details Domain 2
ftp.f-secure.com
Details Domain 8
www.kaspersky.ru
Details Domain 4
ftp.sophos.com
Details Domain 103
www.mcafee.com
Details Domain 64
go.microsoft.com
Details Domain 2
liveupdate.symantec.com
Details Domain 2
www.my-etrust.com
Details Domain 2
mast.mcafee.com
Details Domain 26
www.nai.com
Details Domain 42
mcafee.com
Details Domain 3
www.networkassociates.com
Details Domain 2
media.fastclick.net
Details Domain 132
www.sophos.com
Details Domain 201
msdn.microsoft.com
Details Domain 216
www.symantec.com
Details Domain 2
my-etrust.com
Details Domain 604
www.trendmicro.com
Details Domain 8
nai.com
Details Domain 2
www.viruslist.ru
Details Domain 2
networkassociates.com
Details Domain 3
www3.ca.com
Details Domain 7
office.microsoft.com
Details Domain 41
av-test.org
Details Domain 1
www.fokus.gmd.de
Details Domain 2
www.freedos.org
Details Domain 1
www.winternals.com
Details Domain 3
www.ntfs.com
Details Domain 1
ftp.centralcommand.com
Details Domain 2
www.knopper.net
Details Domain 2
www.kde.org
Details Domain 1
linux-ntfs.sourceforge.net
Details Domain 1
www.jankratochvil.net
Details Domain 1
www.amunra.co.uk
Details Domain 1
www.powerquest.com
Details Domain 2
www.asw.cz
Details Domain 1
www.nu2.nu
Details Domain 1
www.www.nu2.nu
Details Domain 1
www.sureboot.com
Details Domain 337
virusbtn.com
Details Domain 5
www.grisoft.com
Details Domain 1
grisoft.com
Details Domain 2
www.iegexpo.com
Details Domain 8
www.misti.com
Details Domain 84
www.infosec.co.uk
Details Domain 20
www.dallascon.com
Details Domain 66
www.eicar.org
Details Domain 2
www.cla.org
Details Domain 222
www.blackhat.com
Details Domain 132
www.rsaconference.com
Details Domain 3
www.technosecurity.com
Details Domain 4
www3.gartner.com
Details Domain 59
www.gocsi.com
Details Domain 10
misti.com
Details Domain 6
www.laas.fr
Details Domain 1
www.isc.org.cn
Details Domain 3
www.101techstrategies.com
Details Domain 48
www.ceas.cc
Details Domain 24
www.ftc.gov
Details Email 1
security@microsoft.com
Details Email 1
x1234512345@centrum.cz
Details Email 1
shogunn@world-banking.org
Details Email 1
spbstels@rol.ru
Details Email 1
kollektinfo@mail.ru
Details Email 1
davailave@yandex.ru
Details Email 1
test799@altern.org
Details Email 1
bank_acc@oligarh.ru
Details Email 1
bank-acc@yandex.ru
Details Email 1
trojan@e-e-mail.com
Details Email 1
kollekt-info@mail.ru
Details Email 1
info@domenov.net
Details Email 1
collector100@mail.ru
Details Email 1
geomir@centrum.cz
Details Email 1
pizdatiy_email1@list.ru
Details Email 1
anyname@btw.egold-hosting.com
Details Email 1
7653345@list.ru
Details Email 1
support@domenov.net
Details Email 2
w32.zaushka@mm.zip
Details Email 46
editor@virusbtn.com
Details Email 1
sales@grisoft.com
Details Email 330
editorial@virusbtn.com
Details Email 4
yhynes@misti.com
Details File 1
load32.exe
Details File 1
l32x.exe
Details File 1
dllreg.exe
Details File 2
%windir%\win.ini
Details File 1
%windir%\system.ini
Details File 1
vxdmgr32.exe
Details File 1
vxd32v.exe
Details File 1
rundllw.exe
Details File 1
dllxw.exe
Details File 4
windrv.exe
Details File 1
windrive.exe
Details File 1
winload.log
Details File 21
ns.exe
Details File 229
advapi32.dll
Details File 533
ntdll.dll
Details File 15
patch.exe
Details File 1
myphoto.zip
Details File 4
myphoto.jpg
Details File 1
guid32.dll
Details File 1
silentlog.txt
Details File 1
%windir%\vxdload.log
Details File 1
rundlln.sys
Details File 1
vxdload.log
Details File 1
winimg.exe
Details File 1
%windir%\rundllz.sys
Details File 1
email.dat
Details File 1
rundllx.sys
Details File 2
account.cfg
Details File 1
srk.asp
Details File 3
shimgapi.dll
Details File 3
taskmon.exe
Details File 2
the.bat
Details File 3
mm.zip
Details File 3
webcheck.dll
Details File 1260
explorer.exe
Details File 5
worm.exe
Details File 58
win.ini
Details File 1
cdrecord.html
Details File 35
malware.exe
Details File 17
ntfs.sys
Details File 1
000028.php
Details File 384
www.inf
Details File 1
adult.htm
Details IPv4 1
199.166.6.2
Details IPv4 1
207.150.192.12
Details IPv4 1
64.191.107.10
Details IPv4 619
0.0.0.0
Details Url 149
http://www.virusbtn.com/prevalence/.
Details Url 1
https://www.e-gold.com/srk.asp
Details Url 1
http://www.fokus.gmd.de/research/cc/glone/employees
Details Url 2
http://www.freedos.org
Details Url 1
http://www.winternals.com
Details Url 1
http://www.ntfs.com
Details Url 1
ftp://ftp.centralcommand.com/antivirus
Details Url 2
http://www.knopper.net
Details Url 1
http://www.kde.org
Details Url 1
http://linux-ntfs.sourceforge.net
Details Url 1
http://www.jankratochvil.net
Details Url 1
http://www.amunra.co.uk/archives/000028.php
Details Url 1
http://www.powerquest.com/v2i/protector/sbe
Details Url 2
http://www.asw.cz
Details Url 1
http://www.nu2.nu/pebuilder
Details Url 1
http://www.www.nu2.nu
Details Url 1
http://www.sureboot.com
Details Url 64
http://www.virusbtn.com/.
Details Url 3
http://www.grisoft.com/.
Details Url 2
http://www.iegexpo.com/.
Details Url 8
http://www.misti.com/.
Details Url 74
http://www.infosec.co.uk/.
Details Url 18
http://www.dallascon.com/.
Details Url 24
http://www.eicar.org/.
Details Url 2
http://www.cla.org/.
Details Url 134
http://www.blackhat.com/.
Details Url 39
http://www.rsaconference.com/.
Details Url 3
http://www.technosecurity.com/.
Details Url 3
http://www3.gartner.com/.
Details Url 4
http://www.gocsi.com
Details Url 3
http://www.laas.fr/sec2004
Details Url 52
http://www.gocsi.com/.
Details Url 1
http://www.isc.org.cn/.
Details Url 3
http://www.101techstrategies.com/.
Details Url 36
http://www.ceas.cc/.
Details Url 26
http://www.sophos.com
Details Url 1
http://www.ftc.gov/opa/2004/01/adult.htm
Details Windows Registry Key 16
HKLM\Software
Details Windows Registry Key 49
HKLM\Software\Microsoft\Windows
Details Windows Registry Key 14
HKLM\Software\Microsoft
Details Windows Registry Key 36
HKCU\Software
Details Windows Registry Key 1
HKCU\Software\Far\Plugins\FTP\Hosts
Details Windows Registry Key 1
HKCU\Mirabilis\ICQ\Owners
Details Windows Registry Key 1
HKLM\Software\SARS
Details Windows Registry Key 11
HKLM\Software\Microsoft\Windows\CurrentVersion
Details Windows Registry Key 26
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows
Details Windows Registry Key 2
HKEY_CURRENT_USER\Software\Microsft\Windows
Details Windows Registry Key 21
HKEY_CLASSES_ROOT\CLSID