Troj/Agent-ZSU exhibits the following characteristics:
File Information
- Size
- 44K
- SHA-1
- dd1fe3e9eb11a86d1d57170682effa15ba49727a
- MD5
- 2cfae02049bd4a139a7a404c2225a0d0
- CRC-32
- a64560ae
- File type
- Windows executable
- First seen
- 2013-01-18
Other vendor detection
- Trend
- PAK_Generic.001
Runtime Analysis
Dropped Files
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1B.tmp
- Size
- 20K
- SHA-1
- 5647ae6685b89816bd1d31080ff5fba7b6ce671d
- MD5
- faf4533d328da8c2389dcfcde1e808ff
- CRC-32
- d4c03657
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1F.tmp
- Size
- 20K
- SHA-1
- 0d196baad120915dc9eda23348401577ec62df81
- MD5
- 1a8d22cb48841563ebfb6ee2af162b5d
- CRC-32
- ce1d03e1
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1E.tmp
- Size
- 20K
- SHA-1
- e57e8a1dc6ee9974d49dc2ac528640ffb54dc604
- MD5
- 69f71373c0dfa45d16dcaeb0f18f20e1
- CRC-32
- 1010bf78
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#4.tmp
- Size
- 20K
- SHA-1
- c16f270429698805a8b30f4602555d8e358e03da
- MD5
- a2340068450eee02e3983791e95be18e
- CRC-32
- 60caa85e
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#13.tmp
- Size
- 20K
- SHA-1
- 94f1c728dbfb11f4791d4f256ec645cecab6d038
- MD5
- c0b799819c6fe14d10be8adf843288ab
- CRC-32
- 9cf2420f
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#3.tmp
- Size
- 20K
- SHA-1
- 0865fe5f4aef54979e46655e821d07f6ccae2410
- MD5
- e081a2bb85348d8a8b088a9bc72aeeb4
- CRC-32
- 32b6b89f
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#19.tmp
- Size
- 20K
- SHA-1
- b5257b0a931aee38bde3eb92ab6df49cedb50cc1
- MD5
- ae49879850ea320da83858978c0bf927
- CRC-32
- 380d024b
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#14.tmp
- Size
- 20K
- SHA-1
- 7395b09ef8e6c2cf7fc1b7d527c1d9a6859a008a
- MD5
- 2c5f1b2bf20840d8a8baa5c8355b8d4a
- CRC-32
- 4ee63db9
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#15.tmp
- Size
- 20K
- SHA-1
- 2c4b40163d95b4e69731d496997eaba0af7d4b79
- MD5
- 55c29420c2b685174ec543450a1c404e
- CRC-32
- c417fc83
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#16.tmp
- Size
- 20K
- SHA-1
- c815115c509246848cc8bc02011dea6c125804f3
- MD5
- d33b665a42c693b57ef2c319a0a71e89
- CRC-32
- aabd7670
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#17.tmp
- Size
- 20K
- SHA-1
- 98e645ff439d25566449bd6d5f54426997cc6721
- MD5
- 556dd873132da0d50a2650b9d4c9912f
- CRC-32
- 3aec773c
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#C.tmp
- Size
- 20K
- SHA-1
- d7124aec3cb6ededeed15582b76cb6bdffcf941b
- MD5
- 08b7efdf94cb925c107eda9395572681
- CRC-32
- 6f9d42eb
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#F.tmp
- Size
- 20K
- SHA-1
- 037fbbba7261f23d9db18250636dd45bee67bac6
- MD5
- 62479cf2455c5a12e5d1dac1883c0c79
- CRC-32
- 73489fd4
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#18.tmp
- Size
- 20K
- SHA-1
- ef3fce467c065bffb8f1a6516befd844974ddcf9
- MD5
- 39ce5e57766277fbf8cd8d324b4f85ce
- CRC-32
- 2d13c11b
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#11.tmp
- Size
- 20K
- SHA-1
- 6f9c1b785d5e0f9b75d0dba50e4838e182112240
- MD5
- deadedbb4e463db7cca7369999bb925d
- CRC-32
- 7f48ccc4
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#2.tmp
- Size
- 20K
- SHA-1
- 0d1fa29ed93daf876871b2732b8462526377ed1a
- MD5
- 3fb9b8471a6a1680331e5830c395b59f
- CRC-32
- d19c48b1
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#8.tmp
- Size
- 20K
- SHA-1
- c1a58a631d33f75f7f5cc7de50130a35b8477408
- MD5
- c5cfd5e91c9ccf1591d7f53a27c54f2d
- CRC-32
- 8fdff106
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#9.tmp
- Size
- 20K
- SHA-1
- 0b9854b1e41b0b470c8a1e79556482263e869ac9
- MD5
- 12a909389bf3f9ecccc5de46e911766b
- CRC-32
- 315936da
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#D.tmp
- Size
- 20K
- SHA-1
- b499f144237f6406b914f913212919154c3073fa
- MD5
- 71fbd02d476d9292e92544cfa90404bd
- CRC-32
- fba2a148
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#E.tmp
- Size
- 20K
- SHA-1
- 514455f5b0393ad1ca4eb0f9479ce12ad45feee4
- MD5
- 480ba81ff789f831ee3ab2ea684ce403
- CRC-32
- 66e0c359
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#B.tmp
- Size
- 20K
- SHA-1
- d6f6f9a8d5f1698d87a50b1ca3a2431952ed9103
- MD5
- 47fd6a886d5f7b63721d8d3870f554a2
- CRC-32
- 263ee629
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#6.tmp
- Size
- 20K
- SHA-1
- 5727aef4852bd84c4194b9a6d11cfe84a3c69634
- MD5
- fd38133049b0558c9a3fc349305f0970
- CRC-32
- 891c95db
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1C.tmp
- Size
- 20K
- SHA-1
- 69d0554ffc1bc96efb21ee1e853c81e2426e3973
- MD5
- 2de84185550075d7c75f9e3400bf0422
- CRC-32
- 7269a9dc
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#10.tmp
- Size
- 20K
- SHA-1
- a1a7d37d05b57de1f395060c237729da81f3c965
- MD5
- 22d2af06fd458b3ee46fde300cad02a7
- CRC-32
- 60630874
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#5.tmp
- Size
- 20K
- SHA-1
- 2e41b5aedb3025ae552a604a2b2390a9293ffce4
- MD5
- 6ace774ebc6116ceae6d010bf5bb37af
- CRC-32
- 5f4e13f6
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1D.tmp
- Size
- 20K
- SHA-1
- 03592663fcce63e9628f86791751558df3d7879c
- MD5
- c8fefeeb37a144233f202eaa630a351c
- CRC-32
- b5ca45ef
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#1A.tmp
- Size
- 20K
- SHA-1
- 4bd3bc412e359e0a83979e68851a4278bc89898b
- MD5
- 352552f02c15f5ddf5d58a66ea5e2cfb
- CRC-32
- 57580dcb
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#12.tmp
- Size
- 20K
- SHA-1
- 46a620ab79ff661956b63758884543cf38e23025
- MD5
- 2ac39f24e2a22f0836ebb9532ce35068
- CRC-32
- c71892bb
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#A.tmp
- Size
- 20K
- SHA-1
- 1603a9646fd4ed9115061f519fec472a3fee4007
- MD5
- 062229cfc8e53b52b21cc7ab3493a186
- CRC-32
- 8e57bad2
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
- c:\Documents and Settings\test user\Local Settings\Temp\~!#7.tmp
- Size
- 20K
- SHA-1
- 75d83e0ece0a53b968368bf029b459880538ee27
- MD5
- 07443462e512782dcc3fd4ddb9f383f1
- CRC-32
- 9cbe1cb2
- File type
- Unspecified binary - probably data
- First seen
- 2013-01-18
HTTP Requests
- http://fleischerei-otte.de/z.htm
- http://workflow.trailblazerinfosoft.com/u.htm
DNS Requests
- fleischerei-otte.de
- workflow.trailblazerinfosoft.com