| Visit ThreatExpert web site | | | Close Report |
![]() | File System Modifications |
| # | Filename(s) | File Size | File Hash | Alias |
| 1 | %Temp%\0.mid | 2,145 bytes | MD5: 0x40F0058789BE930ACC0CED74BBF9A328 SHA-1: 0x6DBE991800DA8CEF4383F22EF3FFB4DB78AEAD8A |
(not available) |
| 2 | %Temp%\1.mid | 4,496 bytes | MD5: 0x0CF06F51CEAA938763FD390CBB319F80 SHA-1: 0x27BB7BCAD0264A1643D6648F1DDA8D05778EA4FF |
(not available) |
| 3 | %Temp%\128skill.bin | 331 bytes | MD5: 0x1B6D52DE9D794CAF24244B6A8D675DE4 SHA-1: 0x631A1BE680B061B909D73E1983EFF74B72005F9B |
(not available) |
| 4 | %Temp%\128skill.png | 1,680 bytes | MD5: 0x2F93BEF091E34C16098728115470747D SHA-1: 0x500E745BE49A76BF5C3F480F0AF2C6547AD5BCA1 |
(not available) |
| 5 | %Temp%\a.class | 65,852 bytes | MD5: 0x8593C1AE723440158648A0223C91C73A SHA-1: 0xF94CFC269C56A53D68A39AE3AA3DBBC6C1F5DC15 |
(not available) |
| 6 | %Temp%\aa.class | 1,568 bytes | MD5: 0x6376BEF94F62DA31BF1B0E4B8848A755 SHA-1: 0x58D4D2FD73B3473B631928168F24A9E03F9C2775 |
(not available) |
| 7 | %Temp%\b.class | 1,224 bytes | MD5: 0xDA9ABCDC14E98CBAFE65D45BE837B7DC SHA-1: 0xB4C6A34D2BF66A3387FD4514B154DCFF421DC603 |
(not available) |
| 8 | %Temp%\buttonzi.png | 402 bytes | MD5: 0xD00FBBF239F2743236ED92387520E153 SHA-1: 0x1BEF73A1F0D7EBB8CBBEB3652557BAAA58098E91 |
(not available) |
| 9 | %Temp%\c.class | 2,825 bytes | MD5: 0x2BFA7064BEB03BCDDED15205E482F784 SHA-1: 0x86B33517E4DD5D004210EFC1CD6B08CA9FFEC654 |
(not available) |
| 10 | %Temp%\cell1.png | 1,718 bytes | MD5: 0x6B8F2722D5FF642E163E20C76B275105 SHA-1: 0x3BBB0165F2CBD4AA2A26974458EF8D4407A08B52 |
(not available) |
| 11 | %Temp%\d.class | 4,109 bytes | MD5: 0xFB2354C02FDD7742901B3004AD1BF52F SHA-1: 0x5ED861C678E5695E3166543BFA6745B7BC79060C |
(not available) |
| 12 | %Temp%\doors.bin | 254 bytes | MD5: 0xB93D6647929ECB150C18B13EA450D734 SHA-1: 0xD919912E439AA043981D5BF7ACEE5152B118A153 |
(not available) |
| 13 | %Temp%\doors.png | 335 bytes | MD5: 0x7C1802965877326A14F3F3BD851E5D8F SHA-1: 0xCFD1A399CF6E72CFF6B76F20ECAF2EC4BFABEAF9 |
(not available) |
| 14 | %Temp%\e.class | 453 bytes | MD5: 0x141167BF87DFF139DC235D872CA9F8BC SHA-1: 0xE3D585D674A26E844CFD16E082FF203E014DBF7C |
(not available) |
| 15 | %Temp%\e00_0.bin | 308 bytes | MD5: 0x2FA200CB4EB8885DF07802BCCA49A6A1 SHA-1: 0xC9F0BAEBB0246B2D9DD2807F434699AF8BA04F11 |
(not available) |
| 16 | %Temp%\e00_0.png | 850 bytes | MD5: 0xE220558C51E79691FDE452F99A030C7B SHA-1: 0x215DB9CABB86547EEDA27C5FCFD1A264EC7EB32C |
(not available) |
| 17 | %Temp%\e12_0.bin | 1,100 bytes | MD5: 0x0FB744E9533C0A269915D9609A9F0A3A SHA-1: 0xB1A8A12F931A990C2EC84FF6A0A1FF04B47A38C5 |
(not available) |
| 18 | %Temp%\e12_0.png | 1,746 bytes | MD5: 0x71A8B7C785F151FD466B03F480EC059B SHA-1: 0x46DE137D569E78D9E3036B6BDD6C922E13F21B24 |
(not available) |
| 19 | %Temp%\e13_0.bin | 159 bytes | MD5: 0x0ACEB4D5242AF54A1D6F4C9118A664A6 SHA-1: 0x2B60EEBB912B0DA33A1DFA2848459DC6809EBDFB |
(not available) |
| 20 | %Temp%\e13_0.png | 521 bytes | MD5: 0x37E7FB9DAB398A99DA483D564F55CB0B SHA-1: 0x6CF59DCDB41FFBE172ED5AFFCDD1D506B4EC4C04 |
(not available) |
| 21 | %Temp%\enemy1.bin | 378 bytes | MD5: 0xC4DB85DA020FC3D419672D3754553BA8 SHA-1: 0x53B72133E190F7589D95E664E048D90317A0668E |
(not available) |
| 22 | %Temp%\enemy1.png | 625 bytes | MD5: 0xBC477F961CA98CF5FBA505859BDCCAC1 SHA-1: 0x95D79AF57D47FCA397117A4D9C9A0BA47CB4F0ED |
(not available) |
| 23 | %Temp%\f.class | 1,119 bytes | MD5: 0x6FB3429D1D9F5B96E0A8029861E11C35 SHA-1: 0xF222A001132725141DE96E8B0E82F1794B26B82F |
(not available) |
| 24 | %Temp%\g.class | 1,347 bytes | MD5: 0x2A2EE402943DE7C34929B2F086B17F8C SHA-1: 0x35771D99A3D9C4CD9B97D80986FD9B6E20FD5356 |
(not available) |
| 25 | %Temp%\GameMIDlet.class | 796 bytes | MD5: 0x0B731972FAFA9A76195497D6197EFD06 SHA-1: 0xA45A1B0E959EA8C522F4E287F220AC7FAFFFB7E3 |
(not available) |
| 26 | %Temp%\h.class | 1,519 bytes | MD5: 0x3F0044172B0D5DC81F9CCC80F7857935 SHA-1: 0xF3312C2F1914B924DE05A69F839F728D28406453 |
(not available) |
| 27 | %Temp%\i.class | 9,017 bytes | MD5: 0x11F6454514BDD4437EC74A7005F4DFB6 SHA-1: 0x71E000C455C2FBA593BB8DF5E5BD1D7D753B0C1C |
(not available) |
| 28 | %Temp%\icon.png | 406 bytes | MD5: 0xF80A28676E9C304F91118B4A5E36367A SHA-1: 0x64372892A428BD986A05984F637EB50A4C6B45CE |
(not available) |
| 29 | %Temp%\id.bin | 35 bytes | MD5: 0x8FC43FBE2BDD93E66A6CE83B0F791204 SHA-1: 0xE9FD57429F0E0970E1E0E674C1419289348B4840 |
(not available) |
| 30 | %Temp%\j.class | 7,741 bytes | MD5: 0xFAF2BF511E34562C70EE9C1723E567EA SHA-1: 0x0BF3A4522AEB0AAFCAD98A66C4B89D9A5893071A |
(not available) |
| 31 | %Temp%\k.class | 3,619 bytes | MD5: 0x12562FE9D356CBB5F2F2BAC713F3EF99 SHA-1: 0x5F78F30ECB5BB24D10756CB084E84F7BF7F32596 |
(not available) |
| 32 | %Temp%\l.class | 185 bytes | MD5: 0xF2DAA4B89BB0EAE18CD5982E3B8367CC SHA-1: 0x15276667B521E9CCE7F66899A89AE94B69EC6600 |
(not available) |
| 33 | %Temp%\logo0.png | 1,311 bytes | MD5: 0xCEE6783F55005E554B779C0976D37E43 SHA-1: 0x88834862A1DEE04095B0D53317B45BFF5A9D5715 |
(not available) |
| 34 | %Temp%\lubiao.png | 145 bytes | MD5: 0xD79239D74729D7159C8AB09264ED93F8 SHA-1: 0x8DE6B2E0AE61DC39ED3EE705F9A3CF1F73068297 |
(not available) |
| 35 | %Temp%\m.class | 1,153 bytes | MD5: 0x3F43A3EC3A0725BF40733F35134E4B71 SHA-1: 0xF9CA3399D958511B101673F6CD96AE188D79A035 |
(not available) |
| 36 | %Temp%\mainmenu.png | 1,439 bytes | MD5: 0xCB3BA072581F45EBAD56E627DECC92AC SHA-1: 0xC1DF62707560BDA350C7F83CC4816D615DEDD5F4 |
(not available) |
| 37 | %Temp%\mainmenubeijing.png | 11,093 bytes | MD5: 0xC13F47EEAB8F58DC14259EC148161296 SHA-1: 0x3BA5FC612D00925A9FBEBDE0B7E7AFE19E6F302A |
(not available) |
| 38 | %Temp%\map01.png | 1,072 bytes | MD5: 0x6E29AF6408A20E1EE90A3FE75EED044D SHA-1: 0xBFE3B2B71D0C165E16AAEA8A5FACB29D5E4EF8D8 |
(not available) |
| 39 | %Temp%\map02.png | 1,133 bytes | MD5: 0xDED43A673217E03BBD029B1734116545 SHA-1: 0xD76410F7ACD0C364A27F762B41C713B474B2434D |
(not available) |
| 40 | %Temp%\map03.png | 2,017 bytes | MD5: 0x604C008D4FCE310E933A166934A43E6E SHA-1: 0x3D69C978DFF9772FADDC25D9059EF3DE8153B4B5 |
(not available) |
| 41 | %Temp%\map_001.map | 6,169 bytes | MD5: 0x0715197DAF94231AEF78824211189C69 SHA-1: 0x9E3450DF46B559CB6939F86DA3C6C6C04F5F56E0 |
(not available) |
| 42 | %Temp%\map_002.map | 6,169 bytes | MD5: 0x8E84D180E22A52BCD2DBB6264BF6535F SHA-1: 0xD0F6AEE7514AAD6CDA9333EF73976D49737BFECD |
(not available) |
| 43 | %Temp%\map_003.map | 6,049 bytes | MD5: 0x425441ACEA6DA03462163A2D4E40C8B7 SHA-1: 0xC42F4593C8C2793203FA18CC0E3E1F939F138A89 |
(not available) |
| 44 | %Temp%\map_004.map | 6,049 bytes | MD5: 0x4C18B5339B9F41ABAC67BAEA720579FD SHA-1: 0x3CD78ABA2826111E7DCD63CC3C6136E7A93FDA8A |
(not available) |
| 45 | %Temp%\map_005.map | 6,049 bytes | MD5: 0x90D25093EF2ACDE34C997D8A25CA89F2 SHA-1: 0x3E495855DC8358D0FD51829AEE82A894500A5A25 |
(not available) |
| 46 | %Temp%\META-INF\MANIFEST.MF | 315 bytes | MD5: 0x7EEA494BFC021296A69C6FC3F3D74CBA SHA-1: 0xE271ACC14B17CE0594B3237FCA0A09C25A231CA8 |
(not available) |
| 47 | %Temp%\miss.png | 274 bytes | MD5: 0x89E83ECA36090A844841D76BD4E38FCC SHA-1: 0xD4E1E34EA347B03385AD9A716FE0D3583DB10124 |
(not available) |
| 48 | %Temp%\n.class | 3,751 bytes | MD5: 0x54ADCB69589BE08204706EE9488756BF SHA-1: 0x311F9C2BB931FF6EB85769786E4F86A80EBE7742 |
(not available) |
| 49 | %Temp%\n10_0.bin | 217 bytes | MD5: 0x1510B73C0BF656F50010C14DEB5D96AC SHA-1: 0x3045229B6D1DD64B7D349A5B426453782BA90702 |
(not available) |
| 50 | %Temp%\n10_0.png | 570 bytes | MD5: 0x6CD560A3EE74EAF971D859B8A5E075DC SHA-1: 0x52FD1880C83F7AAC459C78A42CBCA5BFE7B21E9B |
(not available) |
| 51 | %Temp%\o.class | 836 bytes | MD5: 0x99EF49C3CD06E101BE3F11AFF6736EF5 SHA-1: 0xCE44B5A404FC3E60B0C43D94A66FE064B87681A2 |
(not available) |
| 52 | %Temp%\p.class | 133 bytes | MD5: 0xA0104B0493FB2F209B0FD187031D78FA SHA-1: 0x6F653A63A9A7701001AEC5E2E26AB1C4D712F918 |
(not available) |
| 53 | %Temp%\q.class | 2,316 bytes | MD5: 0x7279D76520F79BBFF84A62F65296DC5F SHA-1: 0x59D567620304F50B437DCE3319B33F104B4F4E32 |
(not available) |
| 54 | %Temp%\r.class | 7,075 bytes | MD5: 0x9FA7F779FE36CBED756E59B1E4CB3B36 SHA-1: 0x2B3F94B55E067B89E59D80377A4B05B31664EEC6 |
(not available) |
| 55 | %Temp%\s.class | 2,594 bytes | MD5: 0xA0473B9C32E286D533195726D40AF70F SHA-1: 0x5F3D6AC873607A7FFAC301DC34564C26A4D1E2FF |
(not available) |
| 56 | %Temp%\shuxingnum.png | 310 bytes | MD5: 0x54878C4E7D219DD00160C0803933D90A SHA-1: 0x16DF58695A708E0DE89AF761F6CF9BD2D7E241DE |
(not available) |
| 57 | %Temp%\shuxingzi.png | 559 bytes | MD5: 0x9397278CDBE946A5160C5CB4D257CC1C SHA-1: 0xA376FE82614332A8AE87E8B58E18CCDEF7148804 |
(not available) |
| 58 | %Temp%\shuzi.png | 589 bytes | MD5: 0x592DE2F2237E2DBA0C73CCFB76F61573 SHA-1: 0x2205B45C8269D1A92ECCE175D277452EC10A21C1 |
(not available) |
| 59 | %Temp%\smallzdbj.png | 4,440 bytes | MD5: 0xF661E528532C444A349DB7008138CD87 SHA-1: 0x106D29B834F604D328776FB6F2DAEE204CC4D841 |
(not available) |
| 60 | %Temp%\t.class | 2,464 bytes | MD5: 0xEE03DEBA768DBC4787F84EEB957BD2A9 SHA-1: 0x75A835287416A4AD7C0AE4AEE06C28AB964D5096 |
(not available) |
| 61 | %Temp%\tiaozi.png | 202 bytes | MD5: 0x2587547F563AAE3790237D259BAA3140 SHA-1: 0xE80C8F77EA8DA054F6E245B625C901242681809E |
(not available) |
| 62 | %Temp%\topzi.png | 646 bytes | MD5: 0xC34C36C50FD10A7B36F047E470F59F60 SHA-1: 0x3C5DD6507987C6CF0AFF6E1D48CC65EDBEA1DC08 |
(not available) |
| 63 | %Temp%\u.class | 1,824 bytes | MD5: 0x13BEA72AF06083ADCDC8779A0D2692EF SHA-1: 0x2ACCB38D313DDCB6DE5B09D78D2FF6DD710BA3CC |
JAVA.Agent [Ikarus] |
| 64 | %Temp%\v.class | 2,593 bytes | MD5: 0x0DE66A1AD5CEC4CCC0F32D482FF07C7C SHA-1: 0xDC41F46BBE8FB54A3D88DEE391C7926293F1DB0A |
(not available) |
| 65 | %Temp%\w.class | 2,046 bytes | MD5: 0xA930D186D0B818EEF06648EFC44BEAB6 SHA-1: 0x29C10848EC7BF547BBA67D105481FB5F33AD194B |
(not available) |
| 66 | %Temp%\wu.png | 240 bytes | MD5: 0x3716D41E985255F8825C2354D244DF56 SHA-1: 0x9EAD38E5E8444014846E2D3A216CAC79E473A2D7 |
(not available) |
| 67 | %Temp%\x.class | 584 bytes | MD5: 0x90D9B23CAD41548FBB2A366EDEB99573 SHA-1: 0x5BC24959AC4C703FC6086BF9895E1BE014AC5896 |
(not available) |
| 68 | %Temp%\y.class | 5,050 bytes | MD5: 0x765891B50AD3D415D30FE66916562814 SHA-1: 0x2BB07F986B60DD0879C6A4B3EDA8D43CABD27C31 |
(not available) |
| 69 | %Temp%\z.class | 13,882 bytes | MD5: 0x3E74EC64CB36BF2666BD2C02655465F3 SHA-1: 0xE8A26EB549712FC891E57287E6C40F9B22C47DAB |
(not available) |
| 70 | %Temp%\zduizi.png | 516 bytes | MD5: 0xBB641BD65D84BE6BA43CF3A6A78B6F2A SHA-1: 0x6A029B87F0D07F1E452250997F1C64CC1F45935A |
(not available) |
| 71 | %Temp%\zhizhen.png | 298 bytes | MD5: 0x0DE1480A6E731567268F1FF70AA9E27B SHA-1: 0x104AB29A79DFA43D0F35614B6F67A642881F1009 |
(not available) |
| 72 | %Temp%\zhuangbeizi.png | 2,837 bytes | MD5: 0x6CFCFB193FEDD1353FD3DB076AAB3D6A SHA-1: 0x4ECBF626DA219C8D93643815675E206351792786 |
(not available) |
| 73 | [file and pathname of the sample #1] | 118,673 bytes | MD5: 0xD3ED9E85E3116649FDC01FDEEAD4CB3E SHA-1: 0x880AA732360523695F400A0488AD9661F080B86C |
JAVA.Agent [Ikarus] |
![]() | Other details |
All content ("Information") contained in this report is the copyrighted work of Threat Expert Ltd and its associated companies ("ThreatExpert") and may not be copied without the express permission of ThreatExpert.
The Information is provided on an "as is" basis. ThreatExpert disclaims all warranties, whether express or implied, to the maximum extent permitted by law, including the implied warranties that the Information is merchantable, of satisfactory quality, accurate, fit for a particular purpose or need, or non-infringing, unless such implied warranties are legally incapable of exclusion. Further, ThreatExpert does not warrant or make any representations regarding the use or the results of the use of the Information in terms of their correctness, accuracy, reliability, or otherwise.
Copyright © 2013 ThreatExpert. All rights reserved.