March-2014.indd
Image Description
Common Information
Type Value
UUID b8fed236-da87-4f9c-8774-9077b385fbe2
Fingerprint 00f1b63fb5b374f8a20b7889c0a05dda84953f176bdfbfd020043be2c8c19265
Analysis status DONE
Considered CTI value 2
Text language
Published March 4, 2014, 10:40 a.m.
Added to db April 18, 2024, 9:35 a.m.
Last updated Aug. 31, 2024, 12:59 a.m.
Headline March-2014.indd
Title March-2014.indd
Detected Hints/Tags/Attributes 187/3/119
Attributes
Details Type #Events CTI Value
Details CVE 176
cve-2012-0158
Details Domain 404
www.virusbtn.com
Details Domain 287
yahoo.com
Details Domain 622
en.wikipedia.org
Details Domain 201
msdn.microsoft.com
Details Domain 3
withinwindows.com
Details Domain 2
solarbot.net
Details Domain 53
blog.avast.com
Details Domain 133
www.infosecurity-magazine.com
Details Domain 21
www.malwaretech.com
Details Domain 8
www.pretentiousname.com
Details Domain 1
9158.com
Details Domain 1
t2t2.com
Details Domain 1
www.perftech.com
Details Domain 7
opennet.net
Details Domain 337
virusbtn.com
Details Domain 7
www.cto.int
Details Domain 19
www.smi-online.co.uk
Details Domain 15
www.intelligence-sec.com
Details Domain 4
sdiwc.net
Details Domain 2
www.cyber2014.psbeevents.co.uk
Details Domain 222
www.blackhat.com
Details Domain 3
www.isnrabudhabi.com
Details Domain 44
www.sourceconference.com
Details Domain 4
www.counterterrorexpo.com
Details Domain 84
www.infosec.co.uk
Details Domain 15
conference.auscert.org.au
Details Domain 8
www.sapphire.net
Details Domain 4
2014.caro.org
Details Domain 169
www.first.org
Details Domain 8
www.hackinparis.com
Details Email 330
editorial@virusbtn.com
Details Email 55
conference@virusbtn.com
Details File 748
kernel32.dll
Details File 533
ntdll.dll
Details File 4
jvm.dll
Details File 312
calc.exe
Details File 1
201402.pdf
Details File 1260
explorer.exe
Details File 40
cryptbase.dll
Details File 20
sysprep.exe
Details File 1018
rundll32.exe
Details File 1
messagesend.dat
Details File 1
messagerecv.dat
Details File 478
lsass.exe
Details File 15
explore.exe
Details File 1
%08lx.exe
Details File 263
iexplore.exe
Details File 1
%appdata%\tor.bin
Details File 384
www.inf
Details File 1
for-solar-bot-win32napolar.html
Details File 3
rsvp.exe
Details File 271
chrome.exe
Details File 229
advapi32.dll
Details File 1
xyxyxservice.exe
Details File 1
c:\documents and settings\all users\network\t1.dat
Details File 2
g.dat
Details File 2
ddvctrllib.dll
Details File 2
science.exe
Details File 11
download.exe
Details File 2
download.log
Details File 1
instsrv.dat
Details File 55
dwm.exe
Details File 1
%allusersprofile%\network\science.exe
Details File 1
t1.dat
Details File 3
win7elevate_inject.cpp
Details File 1
solutions.html
Details File 2
2014cybergrids31.asp
Details File 2
cyber2014.psb
Details md5 1
6282568857a120a93de3af57e21952e1
Details md5 1
91d26990f22a4584e631395f5ae234c3
Details md5 1
138f32de8f53fe651a7b6967c63cf7ac
Details md5 1
0070a38553997de066b2aba8c0574d6f
Details md5 1
585e9b41ebebe0126cfa878bdea036bc
Details sha1 1
0ddae43498e1b03a274f8ca8b32cd48a1a440e7d
Details sha1 1
5a22efba829c259f1cb17f9ffe529c398397e25c
Details sha1 1
6261e967baf09e608e5d5b156a3701339c73fb95
Details sha1 1
4d2f9aac4408237a56dadb89e256e637a703b4ee
Details sha1 1
4d64bb02d287f2f4e3707f8f7c64a92fbe6621b5
Details sha1 1
4f1e67bfe5c2698698f7abffbfa740507aaaeb49
Details sha1 1
878f09552e7277544f6b3702e310757c0bde1b42
Details sha1 1
9e7cb141eb97e4a83946b3494344b55bbbf0691a
Details sha1 1
a8fb2fa2d1fdbeb45831c3ba08d6d73cd08cb44b
Details sha1 1
f1dae1ee4ece2d5e30b199663f721a3718a661b9
Details IPv4 2
59.188.23.121
Details Url 32
http://www.virusbtn.com/pdf
Details Url 1
https://en.wikipedia.org/wiki/user_account_
Details Url 1
http://msdn.microsoft.com/en-us/library/bb625963.
Details Url 1
http://withinwindows.com/2009/02/05
Details Url 2
http://solarbot.net
Details Url 1
http://blog.avast.com/2013/09/25/win3264napolar-
Details Url 1
http://www.infosecurity-magazine.com/view/34788
Details Url 1
http://www.malwaretech.com/2013/10/end-of-line-
Details Url 3
http://www.pretentiousname.com/misc/w7e_
Details Url 1
http://www.perftech.com
Details Url 1
https://opennet.net
Details Url 138
http://www.virusbtn.com/virusbulletin/subscriptions
Details Url 290
http://www.virusbtn.com
Details Url 3
http://www.cto.int/events/upcoming-
Details Url 2
http://www.smi-online.co.uk/2014cybergrids31.asp
Details Url 8
http://www.intelligence-sec.com
Details Url 4
http://sdiwc.net/conferences/2014
Details Url 2
http://www.cyber2014.psbeevents.co.uk/.
Details Url 134
http://www.blackhat.com/.
Details Url 3
http://www.isnrabudhabi.com/.
Details Url 10
http://www.sourceconference.com/boston/.
Details Url 4
http://www.counterterrorexpo.com/.
Details Url 74
http://www.infosec.co.uk/.
Details Url 14
http://conference.auscert.org.au/.
Details Url 8
http://www.sapphire.net/nisc-2014/.
Details Url 4
http://2014.caro.org/.
Details Url 7
http://www.sourceconference.com/dublin/.
Details Url 4
http://www.smi-online.co.uk/energy/europe
Details Url 7
http://www.first.org/conference/2014.
Details Url 4
http://www.hackinparis.com/.
Details Url 29
http://www.virusbtn.com/conference
Details Windows Registry Key 1
HKLM\CurrentControlSet\Control\SecurityProviders
Details Windows Registry Key 14
HKLM\SOFTWARE
Details Windows Registry Key 2
HKLM\SYSTEM\CurrentControlSet\Services\NetWork