Malware Report - Results

This report shows all the different areas TAZER analyzes for the sample: Host, Network Activity, and Detection.

Malware Search Criteria:
  • MD5 =9714a33e01c0a06ddd7a0febfee193ab

  • Malware Report - Results

    File MD5SumSHA1SUMSHA256SUMFUZZY HASHFile Size
    9714a33e01c0a06ddd7a0febfee193ab0fec07d758d9c4bcfb0f8259250112093de152e487d7ac5388b67542834fa037dece7ea1d4e753fb6910a7b810aca50882c13ee01536:imu+IiTtB0WUQPOrrXtJSGqlhfvXeK69iUP4sNjgwN1L5YP0Zz8QADNG2h9AToJS:yenNUQmrrj111269

    File Results

    File Name
    ami.exe

    SNORT Results

    Snort ClassSnort AlertCount
    N/ANo snort alerts generated0

    AV Results

    AV AlertAV Vendor
    TrojanSymantec
    Generic.dxMcAfee
    IM-Worm.Win32.Agent.vKaspersky

    Folders (Added) - ICC Results

    PathFolder Name

    Files (Added) - ICC Results

    PathFile Name
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesactive directory.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesANSYS training.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesBitDefender serial number.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesbrontok killer.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatescad_safe_matlab_sap_sample.setup.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesGoogle_Earth_BZXV.setup.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesIE7.setup.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplateskaspersky activation key.cmd
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesmicrosoft ASP.NET training.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesmicrosoft C# training.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesmicrosoft MSCE training.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesmicrosoft NetWorking training.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesmicrosoft Windows active training.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesMSproject.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesNew Acrobat professional.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesnod32 serial number.cmd
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesNorton Ghost.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesSex training.dat.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesSymantec serial number.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesTCP-IP & DNS.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesVB.NET complete reference.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesvisual c# complete reference.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesvisual c++ complete reference.pdf.pif
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesWebShot.scr
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplateswindows activation.exe
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplateswindows server.pdf.cmd
    c:/Program Files/Adobe/Reader 8.0/Reader/IDTemplatesxnxx.pif
    c:/Program Files/Common Files/Microsoft Sharedactive directory.pdf.pif
    c:/Program Files/Common Files/Microsoft SharedAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/Program Files/Common Files/Microsoft SharedANSYS training.pif
    c:/Program Files/Common Files/Microsoft SharedBitDefender serial number.exe
    c:/Program Files/Common Files/Microsoft Sharedbrontok killer.exe
    c:/Program Files/Common Files/Microsoft Sharedcad_safe_matlab_sap_sample.setup.exe
    c:/Program Files/Common Files/Microsoft SharedGoogle_Earth_BZXV.setup.exe
    c:/Program Files/Common Files/Microsoft SharedIE7.setup.exe
    c:/Program Files/Common Files/Microsoft Sharedkaspersky activation key.cmd
    c:/Program Files/Common Files/Microsoft Sharedmicrosoft ASP.NET training.pif
    c:/Program Files/Common Files/Microsoft Sharedmicrosoft C# training.exe
    c:/Program Files/Common Files/Microsoft Sharedmicrosoft MSCE training.exe
    c:/Program Files/Common Files/Microsoft Sharedmicrosoft NetWorking training.exe
    c:/Program Files/Common Files/Microsoft Sharedmicrosoft Windows active training.pdf.pif
    c:/Program Files/Common Files/Microsoft SharedMSproject.exe
    c:/Program Files/Common Files/Microsoft SharedNew Acrobat professional.pif
    c:/Program Files/Common Files/Microsoft Sharednod32 serial number.cmd
    c:/Program Files/Common Files/Microsoft SharedNorton Ghost.exe
    c:/Program Files/Common Files/Microsoft SharedSex training.dat.pif
    c:/Program Files/Common Files/Microsoft SharedSymantec serial number.exe
    c:/Program Files/Common Files/Microsoft SharedTCP-IP & DNS.pdf.pif
    c:/Program Files/Common Files/Microsoft SharedVB.NET complete reference.pdf.pif
    c:/Program Files/Common Files/Microsoft Sharedvisual c# complete reference.pdf.pif
    c:/Program Files/Common Files/Microsoft Sharedvisual c++ complete reference.pdf.pif
    c:/Program Files/Common Files/Microsoft SharedWebShot.scr
    c:/Program Files/Common Files/Microsoft Sharedwindows activation.exe
    c:/Program Files/Common Files/Microsoft Sharedwindows server.pdf.cmd
    c:/Program Files/Common Files/Microsoft Sharedxnxx.pif
    c:/Program Files/Movie Maker/Sharedactive directory.pdf.pif
    c:/Program Files/Movie Maker/SharedAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/Program Files/Movie Maker/SharedANSYS training.pif
    c:/Program Files/Movie Maker/SharedBitDefender serial number.exe
    c:/Program Files/Movie Maker/Sharedbrontok killer.exe
    c:/Program Files/Movie Maker/Sharedcad_safe_matlab_sap_sample.setup.exe
    c:/Program Files/Movie Maker/SharedGoogle_Earth_BZXV.setup.exe
    c:/Program Files/Movie Maker/SharedIE7.setup.exe
    c:/Program Files/Movie Maker/Sharedkaspersky activation key.cmd
    c:/Program Files/Movie Maker/Sharedmicrosoft ASP.NET training.pif
    c:/Program Files/Movie Maker/Sharedmicrosoft C# training.exe
    c:/Program Files/Movie Maker/Sharedmicrosoft MSCE training.exe
    c:/Program Files/Movie Maker/Sharedmicrosoft NetWorking training.exe
    c:/Program Files/Movie Maker/Sharedmicrosoft Windows active training.pdf.pif
    c:/Program Files/Movie Maker/SharedMSproject.exe
    c:/Program Files/Movie Maker/SharedNew Acrobat professional.pif
    c:/Program Files/Movie Maker/Sharednod32 serial number.cmd
    c:/Program Files/Movie Maker/SharedNorton Ghost.exe
    c:/Program Files/Movie Maker/SharedSex training.dat.pif
    c:/Program Files/Movie Maker/SharedSymantec serial number.exe
    c:/Program Files/Movie Maker/SharedTCP-IP & DNS.pdf.pif
    c:/Program Files/Movie Maker/SharedVB.NET complete reference.pdf.pif
    c:/Program Files/Movie Maker/Sharedvisual c# complete reference.pdf.pif
    c:/Program Files/Movie Maker/Sharedvisual c++ complete reference.pdf.pif
    c:/Program Files/Movie Maker/SharedWebShot.scr
    c:/Program Files/Movie Maker/Sharedwindows activation.exe
    c:/Program Files/Movie Maker/Sharedwindows server.pdf.cmd
    c:/Program Files/Movie Maker/Sharedxnxx.pif
    c:/Program Files/Mozilla Firefox/modulesactive directory.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesANSYS training.pif
    c:/Program Files/Mozilla Firefox/modulesBitDefender serial number.exe
    c:/Program Files/Mozilla Firefox/modulesbrontok killer.exe
    c:/Program Files/Mozilla Firefox/modulescad_safe_matlab_sap_sample.setup.exe
    c:/Program Files/Mozilla Firefox/modulesGoogle_Earth_BZXV.setup.exe
    c:/Program Files/Mozilla Firefox/modulesIE7.setup.exe
    c:/Program Files/Mozilla Firefox/moduleskaspersky activation key.cmd
    c:/Program Files/Mozilla Firefox/modulesmicrosoft ASP.NET training.pif
    c:/Program Files/Mozilla Firefox/modulesmicrosoft C# training.exe
    c:/Program Files/Mozilla Firefox/modulesmicrosoft MSCE training.exe
    c:/Program Files/Mozilla Firefox/modulesmicrosoft NetWorking training.exe
    c:/Program Files/Mozilla Firefox/modulesmicrosoft Windows active training.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesMSproject.exe
    c:/Program Files/Mozilla Firefox/modulesNew Acrobat professional.pif
    c:/Program Files/Mozilla Firefox/modulesnod32 serial number.cmd
    c:/Program Files/Mozilla Firefox/modulesNorton Ghost.exe
    c:/Program Files/Mozilla Firefox/modulesSex training.dat.pif
    c:/Program Files/Mozilla Firefox/modulesSymantec serial number.exe
    c:/Program Files/Mozilla Firefox/modulesTCP-IP & DNS.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesVB.NET complete reference.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesvisual c# complete reference.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesvisual c++ complete reference.pdf.pif
    c:/Program Files/Mozilla Firefox/modulesWebShot.scr
    c:/Program Files/Mozilla Firefox/moduleswindows activation.exe
    c:/Program Files/Mozilla Firefox/moduleswindows server.pdf.cmd
    c:/Program Files/Mozilla Firefox/modulesxnxx.pif
    c:/WINDOWS/pchealth/helpctr/Tempactive directory.pdf.pif
    c:/WINDOWS/pchealth/helpctr/TempAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/WINDOWS/pchealth/helpctr/TempANSYS training.pif
    c:/WINDOWS/pchealth/helpctr/TempBitDefender serial number.exe
    c:/WINDOWS/pchealth/helpctr/Tempbrontok killer.exe
    c:/WINDOWS/pchealth/helpctr/Tempcad_safe_matlab_sap_sample.setup.exe
    c:/WINDOWS/pchealth/helpctr/TempGoogle_Earth_BZXV.setup.exe
    c:/WINDOWS/pchealth/helpctr/TempIE7.setup.exe
    c:/WINDOWS/pchealth/helpctr/Tempkaspersky activation key.cmd
    c:/WINDOWS/pchealth/helpctr/Tempmicrosoft ASP.NET training.pif
    c:/WINDOWS/pchealth/helpctr/Tempmicrosoft C# training.exe
    c:/WINDOWS/pchealth/helpctr/Tempmicrosoft MSCE training.exe
    c:/WINDOWS/pchealth/helpctr/Tempmicrosoft NetWorking training.exe
    c:/WINDOWS/pchealth/helpctr/Tempmicrosoft Windows active training.pdf.pif
    c:/WINDOWS/pchealth/helpctr/TempMSproject.exe
    c:/WINDOWS/pchealth/helpctr/TempNew Acrobat professional.pif
    c:/WINDOWS/pchealth/helpctr/Tempnod32 serial number.cmd
    c:/WINDOWS/pchealth/helpctr/TempNorton Ghost.exe
    c:/WINDOWS/pchealth/helpctr/TempSex training.dat.pif
    c:/WINDOWS/pchealth/helpctr/TempSymantec serial number.exe
    c:/WINDOWS/pchealth/helpctr/TempTCP-IP & DNS.pdf.pif
    c:/WINDOWS/pchealth/helpctr/TempVB.NET complete reference.pdf.pif
    c:/WINDOWS/pchealth/helpctr/Tempvisual c# complete reference.pdf.pif
    c:/WINDOWS/pchealth/helpctr/Tempvisual c++ complete reference.pdf.pif
    c:/WINDOWS/pchealth/helpctr/TempWebShot.scr
    c:/WINDOWS/pchealth/helpctr/Tempwindows activation.exe
    c:/WINDOWS/pchealth/helpctr/Tempwindows server.pdf.cmd
    c:/WINDOWS/pchealth/helpctr/Tempxnxx.pif
    c:/WINDOWS/PrefetchSANDNET.EXE-2012C478.pf
    c:/WINDOWS/PrefetchSYSTEM.EXE-0B150F3C.pf
    c:/WINDOWS/security/templatesactive directory.pdf.pif
    c:/WINDOWS/security/templatesAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/WINDOWS/security/templatesANSYS training.pif
    c:/WINDOWS/security/templatesBitDefender serial number.exe
    c:/WINDOWS/security/templatesbrontok killer.exe
    c:/WINDOWS/security/templatescad_safe_matlab_sap_sample.setup.exe
    c:/WINDOWS/security/templatesGoogle_Earth_BZXV.setup.exe
    c:/WINDOWS/security/templatesIE7.setup.exe
    c:/WINDOWS/security/templateskaspersky activation key.cmd
    c:/WINDOWS/security/templatesmicrosoft ASP.NET training.pif
    c:/WINDOWS/security/templatesmicrosoft C# training.exe
    c:/WINDOWS/security/templatesmicrosoft MSCE training.exe
    c:/WINDOWS/security/templatesmicrosoft NetWorking training.exe
    c:/WINDOWS/security/templatesmicrosoft Windows active training.pdf.pif
    c:/WINDOWS/security/templatesMSproject.exe
    c:/WINDOWS/security/templatesNew Acrobat professional.pif
    c:/WINDOWS/security/templatesnod32 serial number.cmd
    c:/WINDOWS/security/templatesNorton Ghost.exe
    c:/WINDOWS/security/templatesSex training.dat.pif
    c:/WINDOWS/security/templatesSymantec serial number.exe
    c:/WINDOWS/security/templatesTCP-IP & DNS.pdf.pif
    c:/WINDOWS/security/templatesVB.NET complete reference.pdf.pif
    c:/WINDOWS/security/templatesvisual c# complete reference.pdf.pif
    c:/WINDOWS/security/templatesvisual c++ complete reference.pdf.pif
    c:/WINDOWS/security/templatesWebShot.scr
    c:/WINDOWS/security/templateswindows activation.exe
    c:/WINDOWS/security/templateswindows server.pdf.cmd
    c:/WINDOWS/security/templatesxnxx.pif
    c:/WINDOWS/system32/config/systemprofileactive directory.pdf.pif
    c:/WINDOWS/system32/config/systemprofileAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/WINDOWS/system32/config/systemprofileANSYS training.pif
    c:/WINDOWS/system32/config/systemprofileBitDefender serial number.exe
    c:/WINDOWS/system32/config/systemprofilebrontok killer.exe
    c:/WINDOWS/system32/config/systemprofilecad_safe_matlab_sap_sample.setup.exe
    c:/WINDOWS/system32/config/systemprofileGoogle_Earth_BZXV.setup.exe
    c:/WINDOWS/system32/config/systemprofileIE7.setup.exe
    c:/WINDOWS/system32/config/systemprofilekaspersky activation key.cmd
    c:/WINDOWS/system32/config/systemprofilemicrosoft ASP.NET training.pif
    c:/WINDOWS/system32/config/systemprofilemicrosoft C# training.exe
    c:/WINDOWS/system32/config/systemprofilemicrosoft MSCE training.exe
    c:/WINDOWS/system32/config/systemprofilemicrosoft NetWorking training.exe
    c:/WINDOWS/system32/config/systemprofilemicrosoft Windows active training.pdf.pif
    c:/WINDOWS/system32/config/systemprofileMSproject.exe
    c:/WINDOWS/system32/config/systemprofileNew Acrobat professional.pif
    c:/WINDOWS/system32/config/systemprofilenod32 serial number.cmd
    c:/WINDOWS/system32/config/systemprofileNorton Ghost.exe
    c:/WINDOWS/system32/config/systemprofileSex training.dat.pif
    c:/WINDOWS/system32/config/systemprofileSymantec serial number.exe
    c:/WINDOWS/system32/config/systemprofileTCP-IP & DNS.pdf.pif
    c:/WINDOWS/system32/config/systemprofileVB.NET complete reference.pdf.pif
    c:/WINDOWS/system32/config/systemprofilevisual c# complete reference.pdf.pif
    c:/WINDOWS/system32/config/systemprofilevisual c++ complete reference.pdf.pif
    c:/WINDOWS/system32/config/systemprofileWebShot.scr
    c:/WINDOWS/system32/config/systemprofilewindows activation.exe
    c:/WINDOWS/system32/config/systemprofilewindows server.pdf.cmd
    c:/WINDOWS/system32/config/systemprofilexnxx.pif
    c:/WINDOWS/system32Cexplorer.exe
    c:/WINDOWS/Tempactive directory.pdf.pif
    c:/WINDOWS/TempAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/WINDOWS/TempANSYS training.pif
    c:/WINDOWS/TempBitDefender serial number.exe
    c:/WINDOWS/Tempbrontok killer.exe
    c:/WINDOWS/Tempcad_safe_matlab_sap_sample.setup.exe
    c:/WINDOWS/TempGoogle_Earth_BZXV.setup.exe
    c:/WINDOWS/TempIE7.setup.exe
    c:/WINDOWS/Tempkaspersky activation key.cmd
    c:/WINDOWS/Tempmicrosoft ASP.NET training.pif
    c:/WINDOWS/Tempmicrosoft C# training.exe
    c:/WINDOWS/Tempmicrosoft MSCE training.exe
    c:/WINDOWS/Tempmicrosoft NetWorking training.exe
    c:/WINDOWS/Tempmicrosoft Windows active training.pdf.pif
    c:/WINDOWS/TempMSproject.exe
    c:/WINDOWS/TempNew Acrobat professional.pif
    c:/WINDOWS/Tempnod32 serial number.cmd
    c:/WINDOWS/TempNorton Ghost.exe
    c:/WINDOWS/TempSex training.dat.pif
    c:/WINDOWS/TempSymantec serial number.exe
    c:/WINDOWS/TempTCP-IP & DNS.pdf.pif
    c:/WINDOWS/TempVB.NET complete reference.pdf.pif
    c:/WINDOWS/Tempvisual c# complete reference.pdf.pif
    c:/WINDOWS/Tempvisual c++ complete reference.pdf.pif
    c:/WINDOWS/TempWebShot.scr
    c:/WINDOWS/Tempwindows activation.exe
    c:/WINDOWS/Tempwindows server.pdf.cmd
    c:/WINDOWS/Tempxnxx.pif
    c:/WINDOWS/WinSxS/InstallTempactive directory.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempAdvanced C++ MFC Programming Developer Studio.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempANSYS training.pif
    c:/WINDOWS/WinSxS/InstallTempBitDefender serial number.exe
    c:/WINDOWS/WinSxS/InstallTempbrontok killer.exe
    c:/WINDOWS/WinSxS/InstallTempcad_safe_matlab_sap_sample.setup.exe
    c:/WINDOWS/WinSxS/InstallTempGoogle_Earth_BZXV.setup.exe
    c:/WINDOWS/WinSxS/InstallTempIE7.setup.exe
    c:/WINDOWS/WinSxS/InstallTempkaspersky activation key.cmd
    c:/WINDOWS/WinSxS/InstallTempmicrosoft ASP.NET training.pif
    c:/WINDOWS/WinSxS/InstallTempmicrosoft C# training.exe
    c:/WINDOWS/WinSxS/InstallTempmicrosoft MSCE training.exe
    c:/WINDOWS/WinSxS/InstallTempmicrosoft NetWorking training.exe
    c:/WINDOWS/WinSxS/InstallTempmicrosoft Windows active training.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempMSproject.exe
    c:/WINDOWS/WinSxS/InstallTempNew Acrobat professional.pif
    c:/WINDOWS/WinSxS/InstallTempnod32 serial number.cmd
    c:/WINDOWS/WinSxS/InstallTempNorton Ghost.exe
    c:/WINDOWS/WinSxS/InstallTempSex training.dat.pif
    c:/WINDOWS/WinSxS/InstallTempSymantec serial number.exe
    c:/WINDOWS/WinSxS/InstallTempTCP-IP & DNS.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempVB.NET complete reference.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempvisual c# complete reference.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempvisual c++ complete reference.pdf.pif
    c:/WINDOWS/WinSxS/InstallTempWebShot.scr
    c:/WINDOWS/WinSxS/InstallTempwindows activation.exe
    c:/WINDOWS/WinSxS/InstallTempwindows server.pdf.cmd
    c:/WINDOWS/WinSxS/InstallTempxnxx.pif
    c:/WINDOWSjava.exe
    c:active.exe
    c:ebook.cmd
    c:netstat_post.txt
    c:patch.exe
    c:sex.com.exe
    c:system.exe
    c:taskv_post.txt
    c:WebShot.scr
    c:Win32.sys
    c:Winrar.sys
    c:xnxx.pdf.pif

    Files (Deleted) - ICC Results

    ActionPathFile Name

    Files (Changed) - ICC Results

    ActionPathFile Name
    modifiedc:/Documents and Settings/dmc73144/Cookiesindex.dat
    modifiedc:/Documents and Settings/dmc73144/Local Settings/History/History.IE5index.dat
    modifiedc:/Documents and Settings/dmc73144/Local Settings/Temporary Internet Files/Content.IE5index.dat
    modifiedc:/Documents and Settings/dmc73144ntuser.dat.LOG
    modifiedc:/WINDOWS/PrefetchCMD.EXE-087B4001.pf
    modifiedc:/WINDOWS/PrefetchHSTART.EXE-221D72BF.pf
    modifiedc:/WINDOWS/PrefetchNETSTAT.EXE-2B2B4428.pf
    modifiedc:/WINDOWS/PrefetchSH.EXE-00254D2B.pf
    modifiedc:/WINDOWS/PrefetchSLEEP.EXE-094A3D2A.pf
    modifiedc:/WINDOWS/PrefetchSSHD.EXE-298CA236.pf
    modifiedc:/WINDOWS/PrefetchSWITCH.EXE-0496EC21.pf
    modifiedc:/WINDOWS/PrefetchTASKLIST.EXE-10D94B23.pf
    modifiedc:/WINDOWS/system32/configsoftware.LOG
    modifiedc:/WINDOWS/system32/configSysEvent.Evt
    modifiedc:/WINDOWS/system32/configsystem.LOG
    modifiedc:/WINDOWS/system32/drivers/etchosts
    modifiedc:/WINDOWS/system32/wbem/Logswmiprov.log
    modifiedc:/WINDOWS/system32/wbem/Repository/FSINDEX.MAP
    modifiedc:/WINDOWS/system32/wbem/Repository/FSMAPPING.VER
    modifiedc:/WINDOWS/system32/wbem/Repository/FSMAPPING2.MAP
    modifiedc:/WINDOWS/system32/wbem/Repository/FSOBJECTS.MAP

    Registry Keys (Added) - ICC Results

    ActionPath

    Registry Values (Added) - ICC Results

    ActionPathVal_NameVal_Data

    Registry Values (Deleted) - ICC Results

    ActionPathVal_NameVal_TypeMod_Val_TypeVal_DataMod_Val_Data

    Registry Values (Changed) - ICC Results

    ActionPathVal_NameVal_DataMod_Val_Data
    modifiedHKLM/SOFTWARE/Microsoft/Cryptography/RNGSeedF3 AA 0C 93 1E D1 49 5E 0B 9E 40 B1 DD 4F A4 97 27 71 F1 A1 B7 06 2E A1 2A 45 A3 EC AC 2E 42 CB 1B 34 FA 80 94 1C 35 D0 87 08 E0 2A 4E 13 74 A9 66 4F 5E 35 FA 8
    modifiedHKLM/SOFTWARE/Microsoft/OleEnableDCOM"Y" 4E 00 00 00
    modifiedHKLM/SYSTEM/ControlSet001/Control/ComputerName/ComputerNameComputerName"DMC73144" 79 64 66 65
    modifiedHKLM/SYSTEM/ControlSet001/Services/SharedAccessStart0x00000002 0x00000004
    modifiedHKLM/SYSTEM/ControlSet001/Services/SharedAccess/EpochEpoch0x00000104 0x00000105
    modifiedHKLM/SYSTEM/CurrentControlSet/Control/ComputerName/ComputerNameComputerName"DMC73144" 79 64 66 65
    modifiedHKLM/SYSTEM/CurrentControlSet/Services/SharedAccessStart0x00000002 0x00000004
    modifiedHKLM/SYSTEM/CurrentControlSet/Services/SharedAccess/EpochEpoch0x00000104 0x00000105
    modifiedHKU/S-1-5-21-1844237615-562591055-839522115-1004/Software/Microsoft/Windows/CurrentVersion/Internet Settings/ConnectionsSavedLegacySettings3C 00 00 00 15 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 3C 00 00 00 16 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 0

    DNS Results

    DNSDNS Response

    URL Results

    DstIPHTTP_HOSTHTTP_REQUEST_URIHTTP_USER_AGENTPROTOCOL
    239.255.255.250239.255.255.250:1900*--blank--0x11

    ARGUS PROTOCOL Results

    PROTOCOLSRC_PKTSDST_PKTSSRC_BYTESDST_BYTES
    17203500

    ARGUS DPORT Results

    DPORTPROTOCOLSRC_PKTSDST_PKTSSRC_BYTESDST_BYTES
    190017203500

    ARGUS DATA Results

    TimeDateProtocolSrcIPDstIPDirFlagsSportDportPktsBytes
    13:42:042011-07-101710.10.10.7239.255.255.250-> e 819002350

    Packer Results

    Packer Name

    HoneyTrap Results

    Honey Trap Log File Location

    PTFB Results

    PTFB Log File Location