Path Name | File Name First Used By Program | First Seen | Last Seen | File Size | Determination | Malware Group | Siblings |
|---|
| %WINDIR%\SYSTEM32\ | 28/09/2006 06:46:00 | 16/07/2005 00:55:13 | 27/08/2008 07:10:02 | 81 | B | Rootkit.Haxdoor | 7 |
| ?:\ | 07/11/2006 17:02:00 | 31/07/2005 18:20:40 | 05/08/2008 09:26:06 | 253952 | G | | 6 |
| ?:\internet\security & protection\ad-awrare\spyware\ | 03/08/2005 06:49:00 | 03/08/2005 06:49:11 | 09/04/2006 15:38:18 | 1258486 | U | | 22130 |
| ?:\CEIT99\PRIXDIVERS\ACCU\DOS\ | 16/08/2005 19:42:00 | 16/08/2005 19:41:56 | 16/08/2005 19:41:56 | 84496 | G | | 1 |
| ?:\cd_projects\game_dos2\actions\xerix\ | 08/09/2005 16:05:00 | 08/09/2005 16:04:41 | 18/03/2006 12:22:37 | 20427 | G | | 1 |
| ?:\FACT\CUR\FACT\ | 15/09/2005 12:03:00 | 15/09/2005 12:02:59 | 15/09/2005 12:02:59 | 146650 | G | | 427 |
| 03/10/2005 18:30:00 | 03/10/2005 18:30:26 | 03/10/2005 18:30:26 | 184320 | U | | 1 |
| ?:\ | 04/10/2005 11:13:00 | 04/10/2005 11:12:11 | 08/09/2007 12:24:17 | 1581056 | G | | 1 |
| ?:\ntutil\decompresser\ | 05/10/2005 16:11:00 | 05/10/2005 16:10:58 | 05/10/2005 16:10:58 | 36864 | U | | 1 |
| %programfiles%\pebuilder313\plugin\1_ubdwiz\ | 06/10/2005 04:04:00 | 06/10/2005 04:03:33 | 06/10/2005 04:03:33 | 116752 | U | | 1 |
| ?:\ | 31/10/2005 23:50:00 | 31/10/2005 23:49:35 | 19/09/2006 20:35:38 | 970752 | G | | 1 |
| %DESKTOP%\NEW FOLDER\ | 05/11/2005 17:40:00 | 05/11/2005 17:39:33 | 05/11/2005 17:39:33 | 191621 | U | | 22130 |
| ?:\pojie\加壳\xinstall\xqbox\ | 19/01/2006 11:35:00 | 19/01/2006 11:35:07 | 19/01/2006 11:35:07 | 535040 | U | | 1 |
| ?:\installation programs for setting up pc\xerox workcentre xk50ck\ | 01/02/2006 | 30/01/2006 23:56:42 | 30/01/2006 23:56:42 | 765952 | U | | 1 |
| ?:\llexell\ | 09/03/2006 10:49:00 | 09/03/2006 10:48:08 | 09/03/2006 10:48:08 | 479744 | G | | 929 |
| ?:\ | 03/04/2006 15:27:00 | 03/04/2006 15:19:12 | 17/03/2007 23:10:50 | 752640 | U | | 1 |
| ?:\csg\acsr\ | 05/04/2006 23:30:00 | 05/04/2006 23:12:28 | 10/07/2006 10:19:17 | 184320 | U | | 1 |
| ?:\ | 06/04/2006 13:09:00 | 06/04/2006 13:02:00 | 06/04/2006 13:09:39 | 815104 | G | | 1 |
| ?:\ | 10/04/2006 07:55:00 | 10/04/2006 07:47:38 | 25/12/2007 05:31:27 | 1585152 | G | | 1 |
| ?:\codesamples\gameprogrammingsamples\wgpdumb\games\xtris\ | 13/04/2006 06:06:00 | 13/04/2006 05:55:55 | 13/04/2006 05:55:55 | 657985 | U | | 352 |
| %programfiles%\qrtoolbar\ | 17/04/2006 01:45:00 | 17/04/2006 01:10:11 | 17/04/2006 01:10:11 | 20480 | U | | 1 |
| ?:\ | 02/05/2006 06:53:00 | 02/05/2006 06:53:11 | 27/07/2007 14:12:45 | 966656 | U | | 1 |
| %temp%\a2archive\ | 17/05/2006 12:22:00 | 17/05/2006 12:22:13 | 17/05/2006 12:22:13 | 74435 | U | | 1 |
| %profiles%\top secret\local settings\temp\~acetemp\eurotalk - talk now!-russian\ | 11/06/2006 02:03:00 | 11/06/2006 02:03:10 | 11/06/2006 02:06:08 | 317488 | U | | 1 |
| ?:\program files\application\livepdf\ | 25/06/2006 10:38:00 | 25/06/2006 10:37:37 | 25/06/2006 10:37:37 | 20480 | U | | 1 |
| ?:\apertum98\ | 20/07/2006 14:11:00 | 20/07/2006 14:10:38 | 20/07/2006 14:10:38 | 725813 | U | | 10125 |
| ?:\david\walter medina\zebra\central\os_2\os2mg\d1\ | 29/07/2006 17:00:00 | 29/07/2006 16:57:22 | 29/07/2006 16:57:22 | 348071 | U | | 1 |
| ?:\david\walter medina\zebra\central\win31\mg\d1\ | 29/07/2006 17:00:00 | 29/07/2006 16:57:22 | 29/07/2006 16:57:22 | 286832 | U | | 1 |
| %restore%\ | 02/09/2006 10:09:00 | 13/08/2006 13:47:32 | 01/11/2006 12:42:11 | 62976 | B | Downloader.Drev.A | 1 |
| %profiles%\vali\ | 03/09/2006 14:48:00 | 03/09/2006 14:47:50 | 27/03/2007 20:15:13 | 62464 | B | Covert.Sys.Exec | 1 |
| %DESKTOP%\ | 10/09/2006 18:45:00 | 10/09/2006 18:44:41 | 10/11/2006 14:38:13 | 63488 | B | Covert.Sys.Exec | 1 |
| %programfiles%\xinstall\ | 11/09/2006 18:22:00 | 11/09/2006 18:15:53 | 11/09/2006 18:15:53 | 320512 | U | | 1 |
| ?:\ | 24/10/2006 21:25:00 | 14/09/2006 12:37:48 | 19/10/2006 15:02:25 | 138862 | B | Downloader.Drev.A | 8935 |
| ?:\ | 18/09/2006 07:30:00 | 18/09/2006 07:30:18 | 30/10/2007 14:44:19 | 1585152 | G | | 1 |
| %DESKTOP%\ | 18/09/2006 09:03:00 | 18/09/2006 09:02:49 | 18/09/2006 09:02:49 | 62478 | U | | 1 |
| %DESKTOP%\ | 21/09/2006 16:21:00 | 21/09/2006 16:13:28 | 07/02/2007 06:40:51 | 52305 | B | Downloader.Drev.A | 1 |
| %CACHE%\CONTENT.IE5\????????\ | 27/10/2006 18:03:00 | 21/09/2006 16:23:01 | 21/09/2006 16:23:01 | 42037 | B | Downloader.Drev.A | 1 |
| %profiles%\ville\ | 21/09/2006 17:12:00 | 21/09/2006 17:10:38 | 21/09/2006 17:31:42 | 52257 | U | | 1 |
| %profiles%\ville\ | 21/09/2006 17:17:00 | 21/09/2006 17:15:54 | 21/09/2006 17:15:54 | 47877 | U | | 1 |
| %profiles%\ville\ | 21/09/2006 17:36:00 | 21/09/2006 17:36:18 | 24/09/2006 09:31:23 | 50797 | U | | 1 |
| %profiles%\ville\ | 21/09/2006 17:47:00 | 21/09/2006 17:46:33 | 21/09/2006 17:55:33 | 49337 | U | | 1 |
| %profiles%\ville\ | 21/09/2006 17:57:00 | 21/09/2006 17:56:50 | 21/09/2006 17:56:50 | 36197 | U | | 1 |
| %PROFILES%\ALEX\ | 22/09/2006 04:51:00 | 22/09/2006 03:44:51 | 22/09/2006 03:44:51 | 28815 | U | | 1 |
| %DESKTOP%\ | 23/09/2006 16:13:00 | 23/09/2006 14:51:07 | 23/09/2006 17:08:41 | 50799 | B | Downloader.Drev.A | 1 |
| %WINDIR%\SYSTEM32\ | 24/09/2006 18:22:00 | 24/09/2006 08:51:30 | 25/09/2006 03:06:22 | 52259 | U | | 1 |
| ?:\system volume information\_restore{?sid?}\rp{folder}\ | 19/05/2007 09:14:00 | 25/09/2006 02:59:36 | 29/09/2006 16:11:52 | 49339 | U | | 1 |
| %DESKTOP%\ | 25/09/2006 16:55:00 | 25/09/2006 16:55:18 | 28/07/2008 14:57:27 | 176640 | B | Polynomial.Code.Exploit | 1 |
| %WINDIR%\SYSTEM32\ | 03/10/2006 02:15:00 | 03/10/2006 00:00:35 | 03/10/2006 00:48:56 | 52305 | U | | 1 |
| %WINDIR%\SYSTEM32\ | 08/10/2006 12:36:00 | 08/10/2006 12:35:54 | 08/10/2006 12:35:54 | 62380 | U | | 1 |
| ?:\my documents\manuals & documentation\sspa\809-0007-001 hpa control utility\ | 10/10/2006 11:34:00 | 10/10/2006 11:32:40 | 10/10/2006 11:32:40 | 222297 | U | | 1 |