Submission Summary:

 

Technical Details:

 

File System Modifications

#Filename(s)File SizeFile HashAlias
1 %Temp%\0.mid 14,760 bytes MD5: 0xF8785350E413AB6383383A11A0EC89DA
SHA-1: 0xF68FC83084DC9C93068832A714119174E62BAC92
(not available)
2 %Temp%\1.mid 20,191 bytes MD5: 0x8BEF18ABA62A9EDF63CF943550A6C4BC
SHA-1: 0x203E3D7B4CF0CB1E74A7B4FE0EA5D3933B82CA5F
(not available)
3 %Temp%\an_1.png 222 bytes MD5: 0xDD0A569797F5E8CDB7F25227DA60A88D
SHA-1: 0x7376473C9C400474C55B2DB7603D7E64B4332B6C
(not available)
4 %Temp%\an_2.png 210 bytes MD5: 0xD1D686FFAEEACCEF8C1DA580E8725926
SHA-1: 0xC9AD473D1D284E15504A011C52483D34F92D7B0E
(not available)
5 %Temp%\an_3.png
%Temp%\queren.png
218 bytes MD5: 0x9CF6DD76248787E5207FBE52B0BF4CD3
SHA-1: 0x644E0557CB641A72511385B29821702E59C691E5
(not available)
6 %Temp%\b1.png 6,773 bytes MD5: 0x0351E36291BB750BCD1A8A1FE9E514AF
SHA-1: 0xCCDEE321AF5B9FF7FAF3DC899A28DA3DC540B712
(not available)
7 %Temp%\b2.png 5,706 bytes MD5: 0xBC41A8C3BEB6AEC55FB8E951BE1E40FD
SHA-1: 0x4B2A2EA4CB61B1444CCC2E0CC34F527515DF01C4
(not available)
8 %Temp%\b3.png 239 bytes MD5: 0xCD36C7843A26ABD90F436BC68F2DDD0F
SHA-1: 0x26F59DC5E1256D9F526C5439485144A9AF284D10
(not available)
9 %Temp%\b4.png 429 bytes MD5: 0x44794C0B08F7078F6DEAB4F1856C4F87
SHA-1: 0x9880D6EF2292329ECEB33D75D906B8A0C6EB369B
(not available)
10 %Temp%\bg4.png 8,350 bytes MD5: 0x9396942FD43CA1A490E079FBBA130AC4
SHA-1: 0xD81C366A519E7FF6D4658B1FFE76C7DB018C3B46
(not available)
11 %Temp%\bjt.png 3,626 bytes MD5: 0x5B3A33552BB10DB6BB0BCE7A603B3283
SHA-1: 0x0A0B68DDFB502CF61E93E2B857D02670844253A5
(not available)
12 %Temp%\bt_1.png 2,792 bytes MD5: 0x9609846C20F34F67FF34275E683002C0
SHA-1: 0xF3DF5F9FA87CF66561BE8546D5D95D6071828BF8
(not available)
13 %Temp%\bt_2.png 3,032 bytes MD5: 0x84796DF5FE2E7BC2E8A22B94F527A53A
SHA-1: 0xB326A9297250BC6906C7DE22A19DE445CA6219D0
(not available)
14 %Temp%\bt_3.png 2,952 bytes MD5: 0x12E5D2ACDD1CE0A8053569B6DC50E39B
SHA-1: 0xDC9768DFFDF84E6FE1F118918905A5CEE6E4FD69
(not available)
15 %Temp%\bzz1.png 233 bytes MD5: 0x2C3B8C90CE7062189F97CDAC515BA3EE
SHA-1: 0xA29FD73193233BFDF2E2A71CB90DAC1077C9BBFA
(not available)
16 %Temp%\bzz2.png 315 bytes MD5: 0x6972FD6CFC2F7278E0F5C1550915040A
SHA-1: 0x09780688EB19E04DB4B652C0428C083821FA53EA
(not available)
17 %Temp%\bzz3.png 448 bytes MD5: 0x63D98C855884DDBBD67B7D8F7593D6D4
SHA-1: 0xD0DB8A73000BAA7B979E06660F69DA5C1B5485C2
(not available)
18 %Temp%\bzz4.png 523 bytes MD5: 0x2F38EA6D78953D2E3B7128986633C6AC
SHA-1: 0xDB285EB405EDB912EDBED2F6A62C2E6F11ABA054
(not available)
19 %Temp%\bzz5.png 442 bytes MD5: 0xBC4FEF4B4B044AA31A28013C17DCE08D
SHA-1: 0xDC75039ADC5C2BB65A0BB7D2C2E0FD6A425F94B7
(not available)
20 %Temp%\bzz6.png 201 bytes MD5: 0xA1D95A45C2BA2B13F26B5044A72DB71F
SHA-1: 0x84E05288941052D44619F88D98D5AABF730833F5
(not available)
21 %Temp%\ca_1.png 120 bytes MD5: 0x9521C84434843898A9E7E7CEE15142DE
SHA-1: 0xBBDB995044F053141FF4805AB90BF0D789F0C671
(not available)
22 %Temp%\ca_2.png 108 bytes MD5: 0x9CE61075DD571DFD1E9231A5F4B16FB0
SHA-1: 0xF1F5352CFB3158D5414ED62F675BA917AE296EEC
(not available)
23 %Temp%\com\ophyer\a.class 945 bytes MD5: 0xE047FA41FFCA3B4ABF03935EB8218789
SHA-1: 0x31AC240C2CEF8CA15E1F86DDDE40F7265FD81144
Java.SMSAgent [Ikarus]
24 %Temp%\com\ophyer\SmsSender.class 2,271 bytes MD5: 0xC7FC3184579D3BDDEDE1060649451AF8
SHA-1: 0xBE1B56B2B2A654189F3055ACD06896B53D7A3CBC
Trojan-SMS.J2ME.Agent.ey [Kaspersky Lab]
Trojan-SMS [Ikarus]
25 %Temp%\d.png 111 bytes MD5: 0x98CC458B2E8AA82A9D39711F51A6B17E
SHA-1: 0xEDFD8DF9697AC71120DFA9B6D657E0E65331343F
(not available)
26 %Temp%\da_kd1.png 284 bytes MD5: 0x3E37C25001BEBFC926E55205D415FC91
SHA-1: 0xCF9E89B2C896A79CA1E6C7B0FC9958F103D0944D
(not available)
27 %Temp%\da_kd3.png 122 bytes MD5: 0x1935F2761E33ABB2154317F72CE48115
SHA-1: 0xC333A93CDC5EAF6EF3D081115050460D73B76467
(not available)
28 %Temp%\dcn.bin 574 bytes MD5: 0x937E62783DE33D10F25DD239E8E23271
SHA-1: 0x487423428AF69A5BAFC56D4ABC2CAC5B84AD97BE
(not available)
29 %Temp%\dhk.png 620 bytes MD5: 0xC76EB4C7AECA264D659492FD5AE7B54D
SHA-1: 0x8225200FA7BDE83AE50541A34930AEB86F479F08
(not available)
30 %Temp%\d_j.png 106 bytes MD5: 0x0B4E8F118C0A0F38867C2EADB628CF7C
SHA-1: 0x37E9F6712771BEE08EE53339C132A36158C979B1
(not available)
31 %Temp%\d_x.png 106 bytes MD5: 0xFB7C9F6D39BEEC27480DCD5E9CA42559
SHA-1: 0xB39A76836A5024854F9751E070D7CD32CEE718F0
(not available)
32 %Temp%\fd0_1.png 367 bytes MD5: 0x3FD083DE7727010BB8ABE59703BC201F
SHA-1: 0xD1BDDA6191349A7A6A5A7B24271D0B509D1CDA04
(not available)
33 %Temp%\fd0_1_b.png 376 bytes MD5: 0x5D65B95A91787D6698459DDDD5964D18
SHA-1: 0x4D9E9A94A547548C32732132E7288CA06DEA6BD7
(not available)
34 %Temp%\fd0_1_c.png 363 bytes MD5: 0xD9FCA43DCFF1436862D634CE0DA96F2A
SHA-1: 0xC9F4CAD51A2219EEED1D934F6BF4C83D4CB19531
(not available)
35 %Temp%\fd0_2.png 374 bytes MD5: 0xE11A77D7F62C26323ED8A96D614E643C
SHA-1: 0xC73FEA506CFD2450FBA6908FA5F046149E0AF158
(not available)
36 %Temp%\fd0_2_b.png 374 bytes MD5: 0x2A5660F720759E455EED4EB314A83736
SHA-1: 0x471CE7F6C3B71D41AB8B07D43DF3A2352E130DDD
(not available)
37 %Temp%\fd0_2_c.png 361 bytes MD5: 0x2EE0D52F854710B5F4367DFE13ED67AE
SHA-1: 0x2BB1DBD21C87960014EE9B53C5CC896A8E3DE3A3
(not available)
38 %Temp%\fd0_3.png 331 bytes MD5: 0xF64DE85A98B997EDF36DF3605B225759
SHA-1: 0x1FBBCA8DF47D2B303F369948C1220ECB553E1770
(not available)
39 %Temp%\fd0_3_b.png 345 bytes MD5: 0x2E2A190B2456BF04BA8932CDED2057DE
SHA-1: 0x0E5C143A8F6D3A98679B39AF7CDCA4DCE6A9BEE7
(not available)
40 %Temp%\fd0_3_c.png 335 bytes MD5: 0x95458EC163B33DCC984C4A9504DF6BAA
SHA-1: 0x2F0756ABC4976B9B9D6BE150868D5BE8E4F8B448
(not available)
41 %Temp%\fd1.png 344 bytes MD5: 0x6B4BA4B0E9E21E4A714ADC1CDBCDA566
SHA-1: 0xC52E057F64B7F4F6259944C8B1FA9EEBA0217CB1
(not available)
42 %Temp%\fd1_b.png 350 bytes MD5: 0xAF8004DAD9CA0EA1D8DD951A64B1A212
SHA-1: 0x8460B8B7C2E0B4D513C3FE02FCC64D2EC38A7730
(not available)
43 %Temp%\fd1_c.png 414 bytes MD5: 0x8CBFAC330BB1C01571A39D1EEB2DD11C
SHA-1: 0x4A892CD02FC49706EE6BD54DFF1C190BDC4206F7
(not available)
44 %Temp%\fd2.png 434 bytes MD5: 0xEFA478A1CE4AFD1F385659473363C4DE
SHA-1: 0x74E6545CA326932A15BF7EFE20A1D1D3C732E0F7
(not available)
45 %Temp%\fd2_b.png 435 bytes MD5: 0xD76D2FCFBEEF4A9FBA98682B603EE0A7
SHA-1: 0x2211A05069C4779EDCF355555A2389796D349B4C
(not available)
46 %Temp%\fd2_c.png 430 bytes MD5: 0xAC4744A9BAF8C09901A8E5A4581E6FC8
SHA-1: 0x126A09282996E27C6B518C3DF9D757A8E6147BC5
(not available)
47 %Temp%\fd3.png 432 bytes MD5: 0xBD90FE31F540B5D69C230354349D4EB7
SHA-1: 0x4E4D2B5A2EA1B621B0A5ECA8730070A6219C97FC
(not available)
48 %Temp%\fd3_b.png 435 bytes MD5: 0xCEE68A04505FC485953B491921A85AE3
SHA-1: 0xAFC7051D881D76BBB932654BFDBAAD3CCD1CE4CF
(not available)
49 %Temp%\fd3_c.png 433 bytes MD5: 0x30A4637FD92662A90348F4AC173D0EF0
SHA-1: 0x7A262E3CBDD27EB26606F7947F6AF9474AD1A87B
(not available)
50 %Temp%\fd4.png 435 bytes MD5: 0x6EB8508468C17DF3C10CCD88F311F06B
SHA-1: 0xC3CD4657D3DE4D572BEEDE0BABD75A99294EC58D
(not available)
51 %Temp%\fd4_b.png 416 bytes MD5: 0xCC193A4B7B879763DF13FCBF3026E10B
SHA-1: 0x7BC4F6F2BFC4548FA59CDC9230416893201F9CCD
(not available)
52 %Temp%\fd4_c.png 422 bytes MD5: 0xED8AC5D5305775A42B2A31F0C505CAA2
SHA-1: 0x76EA852B34DDCA70598718592B9C51BA9CC64B88
(not available)
53 %Temp%\fd5.png 462 bytes MD5: 0x90118DBCC8BFA1F583F4D4071161A2A7
SHA-1: 0x1E10836E47F0B2AF6106E7749FB0C8826BC73785
(not available)
54 %Temp%\fd5_b.png 467 bytes MD5: 0x5CE4473D0C62A0E712F735D221E94E2C
SHA-1: 0x6388EC624FAAB3D43863C2AB07BC5F460A0F5189
(not available)
55 %Temp%\fd5_c.png 461 bytes MD5: 0x8961C8DDDF22BE07C3B11592AD11D3C2
SHA-1: 0xB26F7D6A8D797D9794974BED5A702E78301DB17D
(not available)
56 %Temp%\fm.png 13,173 bytes MD5: 0x7A82707B316937E3ED550CCCDA7E3FDF
SHA-1: 0xA15AFA11950BF376122F6F9FF6F155A38ACA8DA7
(not available)
57 %Temp%\g0_g_1.png 385 bytes MD5: 0x41419D8B16A0F9D887BE278CCB60A097
SHA-1: 0xF10A4EB102B61DBE694056DB47F2721E3E7AA92C
(not available)
58 %Temp%\g0_g_2.png 1,006 bytes MD5: 0x868AFC71C5DF0D81F33505ABE1F26D0E
SHA-1: 0x5DFD394A117A2578F2FA42BA0DA87B67FC4C5D48
(not available)
59 %Temp%\g0_g_3.png 407 bytes MD5: 0xDB2A206A57E8BB36375BC1506C12C7BF
SHA-1: 0xEDBC2CCE47C5AFB3AE3A06C9E27739265A97D2F2
(not available)
60 %Temp%\g0_m_1.png 364 bytes MD5: 0x3A1ECEB4076D294210F909C015EF1B41
SHA-1: 0x07FF62B9E8CEA1E21F4B5014B9699815D58E601C
(not available)
61 %Temp%\g0_m_2.png 832 bytes MD5: 0x69A2BFB3E4C1B09925CE0993E74B3E2B
SHA-1: 0xD7ED3C90A405E4C8C87D49E07C94532FE044E447
(not available)
62 %Temp%\g0_m_3.png 818 bytes MD5: 0xAF9A5DA754295C0D7E8CB6CBBA27EF5E
SHA-1: 0x21771D43F385F37CBCDCD23CDAEF7DDE4F27C75B
(not available)
63 %Temp%\g0_s.png 277 bytes MD5: 0x92AA56818F60132E6AE54DF414C99014
SHA-1: 0x9952CE52AD434BC26E4A5F44A0A8D78A01533857
(not available)
64 %Temp%\g0_s_h.png 226 bytes MD5: 0x001298250B2781A7026BB87DC1BC6FBE
SHA-1: 0x1FFA18DBE6FCC9E8D2EE9AA0BA3F3E0E5ED93C0F
(not available)
65 %Temp%\g1_g_1.png 380 bytes MD5: 0x807226182BE8EBE7CDF0942A7DF05C58
SHA-1: 0xAE58B885E21367C3487CE71E92D879253B46B296
(not available)
66 %Temp%\g1_g_2.png 1,202 bytes MD5: 0xC7CFB9D110AC227582DBA0C4D7D39536
SHA-1: 0x1AFFFDB96238FFB4592BB1140728217CF4EBFBE5
(not available)
67 %Temp%\g1_g_3.png 354 bytes MD5: 0xDE3C934D6EAE384FBEB988D9EE943D84
SHA-1: 0x7B75AF9598FC9329BA1BFE60BE36937AF590916F
(not available)
68 %Temp%\g1_m_1.png 361 bytes MD5: 0x0E6B3B083B340FD4DB0AF0C9A276915C
SHA-1: 0x2ABBB49D794F8F64F0DA09732F44650A0DAD84E6
(not available)
69 %Temp%\g1_m_2.png 1,089 bytes MD5: 0xDA9B297C696A4B04C6E95E36DD405833
SHA-1: 0x1C3E4498CBE3C1A69D83D9A02BB82A8C0844F30C
(not available)
70 %Temp%\g1_s.png 270 bytes MD5: 0x0CCC82A863704B0E8C73F895ED366AFB
SHA-1: 0x9FB8ADC6C88C537D9B019038AEBB15319965627D
(not available)
71 %Temp%\g1_s_h.png 220 bytes MD5: 0xCF0E6D50706D235E95095C43592A49C4
SHA-1: 0xEE613F0D9E030E3A434C04457BFAB2D4EDF45946
(not available)
72 %Temp%\g2_m_g_1.png 395 bytes MD5: 0x6A33ACD5DE0B150F05FEDA90865243DE
SHA-1: 0xAD5CA9C3282085975663ECCFCD6D8133AF80BD75
(not available)
73 %Temp%\g2_m_g_2.png 1,326 bytes MD5: 0x81D2F82BBF609BE71A1F10C386FD8A8C
SHA-1: 0x44DDBD02764AD5064BA3C4E548B42180E4F5F740
(not available)
74 %Temp%\g2_m_g_3.png 365 bytes MD5: 0x2EBD26A6AFEA0629C213F7D5C0999264
SHA-1: 0x5F2D879EFFE0758797E1F353112D732A3DE08942
(not available)
75 %Temp%\g2_s.png 259 bytes MD5: 0x890F965456395121FBA514FCCFD512B7
SHA-1: 0xB6FD5636B8B2A865B034ED914DD670040D6C3C5A
(not available)
76 %Temp%\g2_s_h.png 217 bytes MD5: 0x7DCD321E24B111DAEA173E12860F4CAD
SHA-1: 0x0390A93A9BFFB82FBBD10F5F248ED11FFA8803B9
(not available)
77 %Temp%\g3_g_1.png
%Temp%\g3_m_1.png
330 bytes MD5: 0x31B9D235DC345086A7360BE88458F5FE
SHA-1: 0x934FEDCD65BD84283C630DD166FDCECB2BB740C5
(not available)
78 %Temp%\g3_g_2.png 1,055 bytes MD5: 0x2928D23AA7FD3ACC4E9A9D5C011546B9
SHA-1: 0x03A3488F78765D17F2863EA3F55B8711930EB7F6
(not available)
79 %Temp%\g3_g_3.png 967 bytes MD5: 0xBA68C4341F7232EADBEC69F9E4B14D71
SHA-1: 0x8D5D46AF5E0B0D149DA17E412661951D3D2D549F
(not available)
80 %Temp%\g3_g_4.png 379 bytes MD5: 0x3A528AA73914CFDC7017F14FB445F045
SHA-1: 0x0667D02BC16F88CE44C0FFBDF33A920AB655781F
(not available)
81 %Temp%\g3_g_5.png 1,122 bytes MD5: 0x60AAE5676BC848CD268CB09B980CB23B
SHA-1: 0x45D27932FFD49D72685B68C0B58B9A336F1659DB
(not available)
82 %Temp%\g3_g_6.png 323 bytes MD5: 0x9DD7D993F77987DF967385BCDECE1553
SHA-1: 0xAA9A751E957834F9EA0947550657191D890FF339
(not available)
83 %Temp%\g3_g_7.png 341 bytes MD5: 0xA372DACF899ED1D46B241E636385816B
SHA-1: 0x3C604AC49CDC1B830A22A891D9376F6E80B3DE84
(not available)
84 %Temp%\g3_m_2.png 1,032 bytes MD5: 0xE7AC9AEA82F0738D419C0AC66614EFB9
SHA-1: 0x0CC10D913808B3DAB231780609BC7F8F8F2F7303
(not available)
85 %Temp%\g3_s.png 244 bytes MD5: 0x0260EE4A1060DAE00B51EEF22995CDD4
SHA-1: 0x69F5E9394107D2289963D227016A5CF324CA9B9D
(not available)
86 %Temp%\g3_s_h.png 205 bytes MD5: 0xA200F094C0A766AAEFC36B705B132839
SHA-1: 0x5C0D6E279D98885437D956E2609F2E4E61ADE715
(not available)
87 %Temp%\g4_g_1.png 387 bytes MD5: 0xDF7439AB2585F5D639844155B3C51C7A
SHA-1: 0x981232FFF7A616119F4E512CD4E1A7D2A1CB2657
(not available)
88 %Temp%\g4_g_2.png 977 bytes MD5: 0x295151611018443E3573197A7F460282
SHA-1: 0x59CDE331AE97AF2BA25AECF8FAEF57254BFF01A1
(not available)
89 %Temp%\g4_g_3.png 399 bytes MD5: 0x58DF6679E851F28E8EF9A16710755753
SHA-1: 0x0A36CE08D94B5F05683F8ECB4E846842A5AEB462
(not available)
90 %Temp%\g4_g_4.png 1,036 bytes MD5: 0xF2FF1A2DA63956CAC2E3A9E49C31DA3E
SHA-1: 0x20E1441D228573A17F9526127AD065A1D793501B
(not available)
91 %Temp%\g4_g_5.png 413 bytes MD5: 0x0FF41713643FF923A5E1BF315E6C45FF
SHA-1: 0xCDBF108C77A882E013F8B61CA2CB5F0A2890A720
(not available)
92 %Temp%\g4_m_1.png 368 bytes MD5: 0xB8AA0C579A2DE7F1943A48B2CDFD67DF
SHA-1: 0x5C99BD248E461609AB77FA6B6D32D07F0FA88C24
(not available)
93 %Temp%\g4_m_2.png 970 bytes MD5: 0x03AF54C0FD1C6FD8C460777E60BD658D
SHA-1: 0xA7CACEFCA55CF7D7B78979CD90333DE1B1DE3C31
(not available)
94 %Temp%\g4_s.png 257 bytes MD5: 0xCC244778A45D117B99C401A6F20B17B0
SHA-1: 0xAE0E44D41D8644D4351888E64D192888A2FA0888
(not available)
95 %Temp%\g4_s_h.png 212 bytes MD5: 0x93F8C1B9CEE84ADAC1C2B31D904ED105
SHA-1: 0x83AC3A5FE04F551F2B8BA9335D41445F78559B73
(not available)
96 %Temp%\g5_g_1.png
%Temp%\g5_m_1.png
322 bytes MD5: 0x982A22EBA6E5BC530BC5CD94065ED49D
SHA-1: 0x2C558C0537A85C1B045E92535ADFE1CFFF98207D
(not available)
97 %Temp%\g5_g_2.png 1,080 bytes MD5: 0xB7A092459A18BEC5D902F05FD027D48F
SHA-1: 0x48B0D6B3075B9737F94680DDF32275331C6E14AD
(not available)
98 %Temp%\g5_g_3.png 327 bytes MD5: 0x196C567EDA14832F4C8A5BD0926EB54B
SHA-1: 0xE5A7D45A613CC2202616402065595DC514B0BA24
(not available)
99 %Temp%\g5_s.png 239 bytes MD5: 0xE47E5D6EE07C291EBE0A750494406825
SHA-1: 0xB85FAE82CA99AAF3F38DC9A81C581B6C06E8B6DF
(not available)
100 %Temp%\g5_s_h.png 202 bytes MD5: 0xF01872BC01F23F612D7D94536A071DF0
SHA-1: 0xB3CF5CF126AF2777EBF567E98D68E83DBDC5E43B
(not available)

 

Other details

 

 

All content ("Information") contained in this report is the copyrighted work of Threat Expert Ltd and its associated companies ("ThreatExpert") and may not be copied without the express permission of ThreatExpert.

The Information is provided on an "as is" basis. ThreatExpert disclaims all warranties, whether express or implied, to the maximum extent permitted by law, including the implied warranties that the Information is merchantable, of satisfactory quality, accurate, fit for a particular purpose or need, or non-infringing, unless such implied warranties are legally incapable of exclusion. Further, ThreatExpert does not warrant or make any representations regarding the use or the results of the use of the Information in terms of their correctness, accuracy, reliability, or otherwise.

Copyright © 2013 ThreatExpert. All rights reserved.