Pattern AUG-SEP-H

68 samples (Win2K-f (100%))


Ports
InfectionListenUpload
445 (99%)135 (100%)
500 (100%)
1026 (100%)
44445 (99%)
44445 (99%)
Snort IDs
1:2000032 (99%)
1:2000046 (99%)
1:2466 (99%)
1:3000004 (99%)
1:99906 (99%)
Network chatter
FTP
user=a (100%)
pass=a (88%)
server=WinFtpd 1.2 (76%)
exec=resource32w.exe (65%)
Static analysis
MD5
None (100%)