01-24-2013, 11:59 AM
May be infected, file connect to a home ip. Download at your risk.
Detailed report of suspicious malware actions:
Checked for debuggers
Got computer name
Internet connection: C:\Users\Bloku\Desktop\Gifs\New folder (2)\Fac\New folder (2)\CloudDominator\YouTube Account Creator.exe Connects to "151.189.21.100" on port 443 (TCP - HTTPS)
Internet connection: C:\Users\Bloku\Desktop\Gifs\New folder (2)\Fac\New folder (2)\CloudDominator\YouTube Account Creator.exe Connects to "199.7.51.72" on port 80 (TCP - HTTP)
Listed all entry names in a remote access phone book
Queried DNS: ocsp.thawte.com
Queried DNS: http://www.arcor.de
Transfered files from and/or to internet
Detailed report of suspicious malware actions:
Checked for debuggers
Got computer name
Internet connection: C:\Users\Bloku\Desktop\Gifs\New folder (2)\Fac\New folder (2)\CloudDominator\YouTube Account Creator.exe Connects to "151.189.21.100" on port 443 (TCP - HTTPS)
Internet connection: C:\Users\Bloku\Desktop\Gifs\New folder (2)\Fac\New folder (2)\CloudDominator\YouTube Account Creator.exe Connects to "199.7.51.72" on port 80 (TCP - HTTP)
Listed all entry names in a remote access phone book
Queried DNS: ocsp.thawte.com
Queried DNS: http://www.arcor.de
Transfered files from and/or to internet