Malware Report: c35faa85311535b6634fbfebed227ed733370faf
File SHA1: c35faa85311535b6634fbfebed227ed733370faf
File MD5 : 9eb7ce2e7cf498f0f0a596da8f4377b3
File Type: PE32 executable for MS Windows (GUI) Intel 80386 32-bit
Date: Wed Nov 11 02:05:23 MYT 2009
Possible Malware: YES
#– Files Created: –
/WINDOWS/Tasks/{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job
#– Registry Created: –
[SOFTWARE]
[SYSTEM]
[SECURITIES]
[DEFAULT]
[NTUSER]
+ [NTUSER\Software\TurboNet]
+ [NTUSER\Software\XML]
#– Malware Traffic – DNS: –
chatpartyline.com
interhomesite.com
#– Malware Traffic – Connections: –
64.191.82.22.80
64.191.82.23.80
#– Malware Traffic – www: –
chatpartyline.com/resolution.php
interhomesite.com/borders.php
#– Screenshots: –
Screen After 90 Seconds

Categories: malware

