NICK [BHH|XP|US|700438][v5]
USER BHH700438 700438 COMPUTERNAME :[BHH|XP|US|700438][v5]
JOIN #InItTogether

Other details

* The following Host Name was requested from a host database:
o fluffy.jessicadube.com

Memory Modifications

* There were new processes created in the system:

Process Name Process Filename Main Module Size
services.exe %Temp%services.exe 262 144 bytes
[filename of the sample #1] [file and pathname of the sample #1] 57 344 bytes

File System Modifications

* The following files were created in the system:

# Filename(s) File Size File Hash Alias
1 %Temp%k 34 bytes MD5: 0x8E9A1500289C49E80227F5499140A863
SHA-1: 0x16E85C35B742294EF4CE1B1B00E36F80D041B65D (not available)
2 %Temp%services.exe
[file and pathname of the sample #1] 143 360 bytes MD5: 0x8D0384386F17386502BC09D72D8AA907
SHA-1: 0xFDA3ABACE8E7EFC78A26245D72B64D4EE5CD6A39 W32.SillyIRC [Symantec]
Trojan.Win32.VB.aerk [Kaspersky Lab]
Virus.Win32.VB [Ikarus]

Categories: Uncategorized