マルウェア検体

Created at

Uri

種類 パス 検知率 Vtlink SHA-1 MD5(ThreatExpertへリンク)
2010/08/17 07:32:54 hxxp://digitalinfoflow.com/install.52097.exe session_0003.part_01.data session_0003.part_01.data - 8ee69d2af822b89c6e2484561d1b7a4749b56bd6 66d619dad6e659235a2474dfb7addc58
2010/08/18 10:34:46 hxxp://ultraviolent.co.uk/images/icons/bot.exe session_0005.part_01.data session_0005.part_01.data - 924d088095edcb7732ba3c750b271c00e2020b7e d83b02ed1c2f00ca634894f2eb85a970
2010/08/22 04:25:06 hxxp://fancycake.net/.ph/1/exe.exe session_0003.part_01.data session_0003.part_01.data - 21fa0434a3045a65ef1df0a54c8687c1eaa840d2 58572a8f8b6ebdc0bba05ef9e1258cf5
2010/09/07 06:15:37 hxxp://noting.in/files/xxx_video_67.avi session_0003.part_01.data session_0003.part_01.data - cb748ac137336bde403a7ccda7120f84330ae7bc fdce63229ad5e33aa45c7fa9c6f438d9
2010/09/08 16:57:01 hxxp://ra03.t3ded.com:8080/a27.exe session_0003.part_01.data session_0003.part_01.data - 9ed832d86dad02db11b36545f726756414a853e6 4b5a33b4579b011db726015d4b2eba62
2010/09/14 01:47:38 hxxp://chomai.in/mdstr11/dl/mainapp708dl.exe session_0003.part_01.data session_0003.part_01.data - 7379a69ef5237e23f9c527efbf628a2a478e255f dddc9a7c637f6f72b05479188e16326d
2010/09/16 22:48:00 hxxp://popunder777.com/pek/exe.exe session_0003.part_01.data session_0003.part_01.data - 45c27de2b1671dd887daa3fc3c4dfad4db063502 b29936a6c5a1b90468f9f00a7f712e53
2010/09/21 08:04:24 hxxp://scaner-idea.cz.cc/go/?afid=&time= session_0003.part_01.data session_0003.part_01.data - 7a7dfaac0b4ae42b0424cbbd435bc055218ab3d7 2c5e3da4887d2dbbbdf8ab6ea42b685f
2010/09/22 04:52:46 hxxp://trokhotel.info/new_aaa/exe.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/exe[1].exe - 3161d32a9a9d29d3a381b373f9f549d952eb5485 2319809a49a7995df7a9ffc3440cd0bb
2010/09/25 14:09:27 hxxp://man4polis.com/b/exe.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/exe[1].exe - 5bf76eb0d263c21f4f0b5adc6ef2e0f826f95a88 8d51074bfefa34dd57f501a6843cf541
2010/09/27 23:13:42 hxxp://lktwe.in/get.php?id=02908 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/setup[1].exe - 6a8209b88c177fe2dafd387b76467e776f3c281a 4386f28ba0afbca01a226c1b33aaac2a
2010/09/29 10:22:57 hxxp://www.hthehhe.co.cc/x44/ deleted_files C/WINDOWS/Temp/_A.tmpac7d.exe - 28f7b1b7c500edc3467415d4f6154d5b38106eaf d7492f4fe6520bad51ced684688f68d2
2010/10/03 07:05:40 hxxp://www.bingoso.net/fff/mirzoochi.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/mirzoochi[1].exe - 0af8f706a6695109827d0e0b8aeb40df19fe8df8 47db72337ebde3ff573840a839f8f811
2010/10/06 04:43:56 - modified_files C/WINDOWS/FMSRPJPN.dll - 0f8d46c21da4f9f4d0bd9923f39f85fe2fa5009c 9aa4fe2df86715ffe0168bb8b1feaec2
2010/10/07 11:27:19 - modified_files C/Program Files/Windows NT/shell.exe - aa01a72154bbe64f369746271d17519ab3003d2e 5c934e7ba23597b9e81552e323730423
2010/10/08 03:21:42 hxxp://www.hhs75he.co.cc/x55/load.php?spl=java_dt_ff modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/load[1].exe - 55651b721f92f4829331403ab07c12781a65f739 e58f25071c0a95197a7c120cf1e4b89a
2010/10/13 16:11:24 hxxp://www.htj2091.co.cc/x55/ deleted_files C/Documents and Settings/*****/exe.exe - 3132968c3efdaef8780bad49b21aa83b5f366fc0 61a2d77dde0bf3687e3d11d0705ca81a
2010/10/17 00:38:34 hxxp://www.bingoso.net/ggg/mbzuchi.exe session_0003.part_01.data session_0003.part_01.data - cc197916a33ebc73fbe0fc4811c7fa934e0cc3f0 9af25ee96d2e956e34830bacd0b20c3b
2010/10/17 21:09:13 hxxp://lqmbqp.co.in/get.php?id=02903 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/setup[1].exe - f474b27ced54e2109117827aa268d50add241177 ff3d09c8e42efbce3ffd806f3cb7a1aa
2010/10/19 03:45:55 hxxp://timeupdate.asia/t1me/cnv1.exe session_0012.part_01.data session_0012.part_01.data - bf45f2cc8ef1cc7c729cb868a8737d1d72b06b78 966ae34e205723bf594b02428ca6a48a
2010/11/01 06:09:58 - modified_files C/WINDOWS/system32/spool/prtprocs/w32x86/MYWS1e.dll - 7471b4fce8e4225cb3ad7dbf15cb55fcdd703f18 1c7652996777e516f533dd9616540f43
2010/11/05 07:05:27 - deleted_files C/WINDOWS/Temp/AcrF9B.tmp - 63c96da0b9d1a4ca1372e38cded32e2558a65545 803620b1338f32d119e0b23c10324908
2010/11/10 14:19:47 hxxp://acerprotection.com/install109.exe session_0004.part_01.data session_0004.part_01.data - ef86e626c603753cb38d41a01f0ec0667fe5c28c e1ba66ecc0cf466870f5109878dcbb48
2010/11/13 06:28:02 hxxp://dd227.aasite.info:777/loading/take.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/48B6UTSH/take[1].exe - 83760a897e35dea5fef280daec59aadb36c2453c 6cdc275dd787c7a166c7be25993ac49d
2010/11/15 04:19:53 hxxp://blindwife.net/panel3/ppnl3.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/AZLLINM2/ppnl3[1].exe - a5d82f7554bea2ca7c38be9b6663d9f49022b370 6660a06ea0f04d035b75b6e72e6eefa9
2010/11/17 04:42:25 hxxp://b5v6c71-d0g.06789.info:28080/28080/a.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/55MS8P6Y/a[1].exe - 39707fac1d784f29b884de2db9d8599fd9746247 7fe97d2265446256988d3e326bf9cc90
2010/08/14 19:04:58 hxxp://dl.tfday.in/70723/updater7072310000.exe session_0003.part_01.data session_0003.part_01.data - 28d2002e88cf3d3a589874aebfecf1fa118c90e5 aef269ac98eb669a4c6a537233dbd8fe
2010/08/17 07:33:41 hxxp://digitalinfoflow.com/install.52097.exe session_0003.part_01.data session_0003.part_01.data - 8ee69d2af822b89c6e2484561d1b7a4749b56bd6 66d619dad6e659235a2474dfb7addc58
2010/08/19 08:12:01 hxxp://ololfs.co.cc/x44/load.php?spl=java_dt_ie modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/load[1].exe - a71e077c5b6b8e475ec25788a9efefeb04c28c07 9990b254555c7865ea6fa361828a162a
2010/08/30 05:29:43 hxxp://hezhthu.co.cc/x33/ deleted_files C/Documents and Settings/*****/Local Settings/Application Data/Windows Server/sphlp.dll - decb0155af1a6088686b5c601e192c801124e56b 050e03db9c508ae2142b4811c0427e8b
2010/09/02 21:12:33 hxxp://www.connectionsupport.org/f/bin/sp.exe session_0002.part_01.data session_0002.part_01.data - 09d72999b930637cd76bb452f6e0c49da5979ca3 baf7327ddbaac4bc6142afd7b086e02d
2010/09/04 19:15:20 hxxp://adobeflash-ver95.co.tv/acec/video_part_07.exe session_0003.part_01.data session_0003.part_01.data - 47c75f5822857e2789f1c5656e2a2b4e6ef241f2 1c1a608185b972f20efaa70ea887da37
2010/09/06 11:28:02 hxxp://foregan.in/xxx_video_348.avi session_0003.part_01.data session_0003.part_01.data - acff76cdb40132c59cc9d4b5fa5d24e2f4b5bf6a c26c172727311cf41bdce2a8273a24e0
2010/09/07 06:15:39 hxxp://noting.in/files/xxx_video_67.avi modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/vip_porno_38247.avi[1].exe - fdddf82c9636652f583c37999aab138a2205e19d a19d77c85cffd66ccee6490cae180833
2010/09/08 16:59:01 hxxp://ra03.t3ded.com:8080/a27.exe session_0003.part_01.data session_0003.part_01.data - 9ed832d86dad02db11b36545f726756414a853e6 4b5a33b4579b011db726015d4b2eba62
2010/09/10 12:40:36 hxxp://manmovieonline.com/video-plugin.45312.exe session_0003.part_01.data session_0003.part_01.data - db4bc616fce60b136ec0321ee2ed1c890c961b77 ec002812e10fd49652ac9bece7a85baa
2010/09/12 07:35:14 hxxp://tsd1online.com/f_32thg2ihfloeil/yif3hj373959fd/up3/bot_upp3_124.exe session_0003.part_01.data session_0003.part_01.data - 60304845f027151b08f632d33fa0a7f453f881a1 6c7c414aace8845024bc86b2cfd5c9e8
2010/09/14 01:47:40 hxxp://chomai.in/mdstr11/dl/mainapp708dl.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/mainapp708dl[1].exe - e7f51a198ee788aab88c12f03e6daa2788df9786 9e12d0cbd4b50dec5681b4ef6cb6bede
2010/09/16 03:24:42 hxxp://xableupper.com/cp/bin/ddd.exe session_0003.part_01.data session_0003.part_01.data - da0ed7480a3c1da625a673f80b30740c085561f2 bd0278506fa32d99cc5e236bfe550f53
2010/09/16 22:48:02 hxxp://popunder777.com/pek/exe.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/exe[1].exe - a2912a41f2cd356338745fdcdd9f1c3fc1ec9bb6 c06a87e30cef2045049b1f86317eb9ba
2010/09/18 04:51:12 hxxp://trokb.info/new_aaa/exe.exe session_0004.part_01.data session_0004.part_01.data - 6dde2d8eaa0530a80c4233ec784595799893c25e d1b2961737d027d24f13153786197f46
2010/09/21 08:05:27 hxxp://scaner-idea.cz.cc/go/?afid=&time= session_0004.part_01.data session_0004.part_01.data - 97b41bdea7bcac54a1d3f60ee399c2dbe61d81ce 151cf8191bbecba6eed26a9e526a375e
2010/09/22 04:54:15 hxxp://trokhotel.info/new_aaa/exe.exe session_0003.part_01.data session_0003.part_01.data - 3161d32a9a9d29d3a381b373f9f549d952eb5485 2319809a49a7995df7a9ffc3440cd0bb
2010/09/23 20:12:00 - deleted_files C/WINDOWS/Temp/_A.tmpac7d.exe - 282ee31531fa41b83042c79ab449699d337274d6 6fedf3c9c78cad96d6a47cfa6c04f641
2010/09/25 14:09:53 hxxp://man4polis.com/b/exe.exe deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/BFS2DG34/exe[1].exe - 1774622323aa3e2e263fae4f2f62b1dc5783eb23 088fda9443d42749d78b421361e291fc
2010/09/27 23:17:47 hxxp://lkcjfrt.in/get.php?id=02908 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/setup[1].exe - fa56d1d30533412347c8c336a2bfd9da2505e329 49c630d1d68cd7283c070f851b4f0c30
2010/09/29 10:23:22 hxxp://www.hthehhe.co.cc/x44/ modified_files C/Documents and Settings/*****/Application Data/Desktop Security/securitycenter.exe - b7f4eec30a97af50c16aa2eeb6e8a1117f7b99ee 97e3908de8e743b6ffa1c9ba26f2985f
2010/10/01 10:13:29 - modified_files C/WINDOWS/dogelp.dll - 185db1948db9fa9f524eb7fdefec295e3478149b f3c41706ea903fdef91934d0b7433275
2010/10/03 07:06:46 hxxp://www.bingoso.net/fff/mirzoochi.exe session_0003.part_01.data session_0003.part_01.data - 27e8ba217124c3fea47ecf32e79450d3bab9e17f 60f8c9292c6a397a5792e67bd9ce3501
2010/10/04 17:41:58 hxxp://xyilo.ru/123/bot.exe session_0004.part_01.data session_0004.part_01.data - 34ac00f57bfd96e1de4206dea3bd6733f2df8409 0ba6eee484444ced52908b6a296b868b
2010/10/08 03:23:49 - deleted_files C/Documents and Settings/*****/exe.exe - f47c4df1d576059dad1db81723bdb04027ba9f5a 766e4ca61a76dd58aa2a3eb138cf1969
2010/10/08 23:23:30 - deleted_files C/WINDOWS/Temp/_A.tmpac7d.exe - 282ee31531fa41b83042c79ab449699d337274d6 6fedf3c9c78cad96d6a47cfa6c04f641
2010/10/12 13:09:03 - modified_files C/Program Files/Internet Explorer/svchost.exe - fbdb79215f2db24bd65a90bdd23297c0f67d0dd7 fa3641f9390c92ebae57570fc13f7a30
2010/10/12 17:16:55 - deleted_files C/WINDOWS/Temp/_A.tmpac7d.exe - 282ee31531fa41b83042c79ab449699d337274d6 6fedf3c9c78cad96d6a47cfa6c04f641
2010/10/17 00:38:36 hxxp://www.bingoso.net/ggg/mbzuchi.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/mbzuchi[1].exe - feb28599d29dff98d3921f5e4d0974550cbb234d 82dc7e4a02381d59518b2ba649faf2f7
2010/10/17 02:22:24 hxxp://fedikloool.ru/picture/botez.exe session_0005.part_01.data session_0005.part_01.data - ea42603123bb4825514071fba6bab8b2ca3de26a 5cbdb90d90408905cf7bec9d92900aa3
2010/10/17 21:11:10 hxxp://jvdluu.co.in/get.php?id=02903 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/setup[1].exe - db8d2af0fe7de6e9855aa5877cacda5b210694eb 19b41ce7df6b801da906d06c8c4330f8
2010/10/21 05:13:40 hxxp://parmspss.net/panel3/ppnl3.exe session_0003.part_01.data session_0003.part_01.data - e146ca2212081c091ee05065f01b6cdbfb4784d4 04be644b2e4e006d6a1898428e01e129
2010/10/23 12:02:18 hxxp://pitorysoue.com/ptz/ptg.exe session_0003.part_01.data session_0003.part_01.data - 69eb566938e14e1658a69943458cbd07149b6387 08a09d47d0b3039e57ba9817c61db4de
2010/10/24 07:53:00 hxxp://teonflex1.tk/load.php?file=0 deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/16[1].exe - 4c92867e9a97a176f0eb45dfedd0f4e1aee5fe25 9d51582d1fc8275ada2eb3c75be99d63
2010/10/27 04:55:24 - modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/A0IDNTZX/setup[1].exe - 8379f143e5d586f388d1b27aee069f9ea19d2bc3 83bc785e567027ee3aca5c935f0e0035
2010/11/05 07:05:34 - deleted_files C/WINDOWS/Temp/AcrF9A.tmp - 425a32ea137abe5e0648797a8ac37e11ea3265aa 7ce1fc1a71973ed74a4547520383067d
2010/11/10 14:19:49 hxxp://acerprotection.com/install109.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/48B6UTSH/install109[1].exe - 6e9ca6882d322f2a74217ded0c479693d6727e9b f6a602b5906f2c18635720b501d2124c
2010/11/13 06:28:57 hxxp://dd227.aasite.info:777/loading/take.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/47QUPHI1/take[1].exe - ad89a78bb55b4069ece3ab2b7e2b59ca0c2d5cbf 62889c2f5824845129b37a3b3397389d
2010/11/15 04:20:45 hxxp://blindwife.net/panel3/ppnl3.exe session_0007.part_01.data session_0007.part_01.data - c084506d3b6d893d416bf91d3eef9946d1019f5f 7b71aa667fb4e6f2c4ee8a4a7c6df5d9
2010/11/17 04:43:19 hxxp://b5v6c71-d0g.06789.info:28080/28080/a.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/47QUPHI1/a[1].exe - 24892d3c38d29257f6e878daf6918ba7d0346134 48f0699bdfa138fe4c94da9c01ad3eae
2010/08/14 19:05:00 hxxp://dl.tfday.in/70723/updater7072310000.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/updater7072310000[1].exe - e0cf51c212f15023a350ff88a9642abe1e33862c 1758809d002436006852a0956d82b7fe
2010/08/17 07:33:43 hxxp://digitalinfoflow.com/install.52097.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/BFS2DG34/install.52097[1].exe - 6121e9fc2eb02f911044663fa03d1ca5bf55ff94 84fd867e429902c20857ab235bed5b03
2010/08/18 10:37:00 hxxp://www.mjsn.org/system/cache/pictures/postal/counter.php session_0005.part_01.data session_0005.part_01.data - 9a351162a525ffd0c2385e9f28794c2f4039e5f8 14938a717f586220f821951f300b2451
2010/08/19 08:14:02 hxxp://ololfs.co.cc/x44/load.php?spl=java_dt_ie deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/load[1].exe - ff0410508c16296e834790efcbf096eb1b852db4 fab09c93522682d82f5882311daeb089
2010/08/22 04:26:30 hxxp://fancycake.net/.ph/1/exe.exe session_0004.part_01.data session_0004.part_01.data - bba205c58b98d19dcd279bca23c9f458159a5857 d44d791bbb3211c88fea57ad5d5162df
2010/08/30 05:32:12 hxxp://hezhthu.co.cc/x33/ deleted_files C/Documents and Settings/*****/Local Settings/Application Data/Windows Server/sphlp.dll - decb0155af1a6088686b5c601e192c801124e56b 050e03db9c508ae2142b4811c0427e8b
2010/08/31 06:31:23 hxxp://hezhthu.co.cc/x33/ deleted_files C/Documents and Settings/*****/Local Settings/Application Data/Windows Server/sphlp.dll - decb0155af1a6088686b5c601e192c801124e56b 050e03db9c508ae2142b4811c0427e8b
2010/09/02 21:12:35 hxxp://www.connectionsupport.org/f/bin/sp.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/BFS2DG34/sp[1].exe - 844d9d42b72cf92867dc8a7f10dad02fe78ee86c a85d6b1524684a0a2715fd1f67770597
2010/09/04 19:15:45 hxxp://adobeflash-ver95.co.tv/acec/video_part_07.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/video_part_07[1].exe - 9d00641c3333e02e54c5e62c1d3c626f0315b7e3 b475c657ee426d31749da1f3d16f66af
2010/09/06 11:28:25 hxxp://foregan.in/xxx_video_348.avi modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/vip_porno_21278.avi[1].exe - cf50bc3cf27bb5569e52c4a1c17990e670c8b238 67d0e4291a84d9e450b90d5eaeb2cdf7
2010/09/07 06:16:38 hxxp://noting.in/files/xxx_video_67.avi session_0003.part_01.data session_0003.part_01.data - 2a97da82f5906ad932e7b4ac77e99ad1467e1f71 7c67cb0d966ca11d08324f33ce0e7ea0
2010/09/10 12:41:01 hxxp://manmovieonline.com/video-plugin.45312.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/video-plugin.45312[1].exe - 67ebadebdfc1bfd0f32fd0af3838ad669d377229 e25d3e0dbb6c8e65f578cf4ccaa22e8a
2010/09/14 01:49:50 hxxp://dnnaoutar2.com/b/exe.exe deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/exe[1].exe - 3c5b27803fb9e0cb9404f1a3a63fff38d0ff691e 775e872740106b5e2d565b0fed3fc7a0
2010/09/16 22:49:34 hxxp://popunder777.com/pek/exe.exe session_0002.part_01.data session_0002.part_01.data - c0d874973436687ceb8424a49cf4e819a865cbcd 88f23f1531cc30377d2947462e994f30
2010/09/21 08:05:28 hxxp://scaner-idea.cz.cc/go/?afid=&time= deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/antivirus[1].exe - 87dc3a520d6e744745eee2ec1681b64e4dc1ce4a 96bbb6558a949b16ff6a1624dc4a82b2
2010/09/22 05:30:35 hxxp://fajo3palos.com/b/exe.exe session_0004.part_01.data session_0004.part_01.data - d99f0c68b2b0f164129351a7334aa119745c7cbb 41d43fd6899973f8190c80935c64187a
2010/09/25 14:09:55 hxxp://man4polis.com/b/exe.exe session_0003.part_01.data session_0003.part_01.data - 0d8ff12f82d8fa954ad7ba32612cb10ba9a30336 bb836c06c83f00fd70adcfc3c8875b71
2010/09/27 23:18:53 hxxp://lkcjfrt.in/get.php?id=02908 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/setup[1].exe - c04743d42ad841b5bf021fb47ba426384b069b8e 9db0a92faea979796197fc0302e8bac2
2010/09/29 10:23:23 hxxp://www.hthehhe.co.cc/x44/ modified_files C/Documents and Settings/*****/Application Data/Desktop Security/Desktop Security 2010.exe - e4b9a21329db846740f2b026190fbb617498e2c5 bf475715034e27b67942c2274c89fe3c
2010/10/01 10:13:32 - modified_files C/Documents and Settings/*****/exe.exe - 4fa3edb36d145f173b537369f75fd303315eade3 a1649c842f3bb642e7df8d13377ae0ce
2010/10/03 07:06:48 hxxp://www.bingoso.net/fff/mirzoochi.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/mirzoochi[1].exe - 5795f263a5573b34b424c5e9a8667e45c6449983 ad4a991f464258d0b732bb8231065289
2010/10/08 03:26:35 hxxp://www.hhs75he.co.cc/x55/load.php?spl=java_dt_ff deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/load[1].exe - cd24674246858268f50df656c3d48e6f2fa0f311 be1666ffb2a43ec70c23cd077e6047c5
2010/10/12 13:10:31 hxxp://www.htj2091.co.cc/x22/load.php?spl=java_dt_ff modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/40J8GL1X/load[1].exe - 1d1132e0f059fa26318918f4da38fd31944d3e8d 49658f4fa9835d0f56c559d351ff76be
2010/10/13 17:16:03 hxxp://serveranalytics.net/bot.exe session_0003.part_01.data session_0003.part_01.data - 95cca33b3559c128eee9767b3ebb6e3fc76392d0 ceee3dcc5e751f1ee8c70fe6f4f626dd
2010/10/15 22:51:31 hxxp://youfreecooltube.no-ip.biz/download/av.php session_0004.part_01.data session_0004.part_01.data - 486f7fd9a4997655ab7934000c41016d131edd81 8040516ec69dca1139d3753516892fd1
2010/10/17 02:23:26 hxxp://www.dkzathe.co.cc/x44/ deleted_files C/WINDOWS/Temp/_A.tmpac7d.exe - 9bf0b3ddf2d98f4b44b3b2aca1979175418e97d8 8d5fdcf56b1d737ce8d8b4094d9f88f5
2010/10/17 21:11:37 hxxp://lqmbqp.co.in/get.php?id=02903 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/LERRV50T/setup[1].exe - 24bb1abb1433d96606b7f4d2eea1a613aa5f0630 982dc33cf59b36062ca8be53354f1d69
2010/10/19 03:49:16 hxxp://axzjaw.gen.in/get.php?id=02903 deleted_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/setup[1].exe - 216502a4a0e8f3078eceff60373072adf6c1d8a2 5ca1022c4b323a4c3357421117d86ad7
2010/10/21 05:13:42 hxxp://parmspss.net/panel3/ppnl3.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/ppnl3[1].exe - 94caee518d6a7e570f6ac460ff8e8685878ef784 074291903ed2b731cca52ee870648938
2010/10/23 12:02:20 hxxp://pitorysoue.com/ptz/ptg.exe modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/BFS2DG34/ptg[1].exe - a80188f6c898420e91650f0b6a2bd93ce31e1dcb 3df5b0c83c35da920e4596d153fb5678
2010/10/24 07:55:17 hxxp://teonflex1.tk/load.php?file=0 modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/FRHBQUW2/16[1].exe - 3ee00bcce3818a2e642aae708deef1dc7be1860c 63d7a7cf0ea45d824667a6b8b0a5c0ba
2010/10/27 05:11:04 - modified_files C/Documents and Settings/*****/Local Settings/Temporary Internet Files/Content.IE5/SODEGYS8/setup[1].exe - 04af9e85184bccc596fa97e09aa024394859bb05 03ddc797a32900e0ef65723937df5690
2010/11/01 06:10:10 - modified_files C/Documents and Settings/*****/デスクトップ/a.exe - 4f82e427c407fbf3e1d542024baa54f94a4e01e6 9729e3554de960a4e7834f20471c9d4c
2010/11/05 07:11:09 - session_0007.part_01.data session_0007.part_01.data - ebb8ffb4a1d69cc8e62de79e147b471439922474 68e9235a9f2846b6d216c176d7742a1f
Mailaddr Rails