<?xml version="1.0"?>
<!-- This analysis was created by CWSandbox (c) Carsten Willems 2006--> 
<analysis cwsversion="1.107" time="12.04.2007 15:13:51" file="3ddd48125388f1e30b3eba53322d13fd.exe" logpath="C:\analysis\log\3ddd48125388f1e30b3eba53322d13fd.exe\run_1\">
<calltree>
<process_call index="1" pid="1012" filename="c:\3ddd48125388f1e30b3eba53322d13fd.exe" starttime="00:00.281" startreason="AnalysisTarget"/>
</calltree>

<processes>
<process index="1" pid="1012" filename="c:\3ddd48125388f1e30b3eba53322d13fd.exe" filesize="28672" md5="3ddd48125388f1e30b3eba53322d13fd" username="nepenthes" parentindex="0" starttime="00:00.281" terminationtime="02:00.359" startreason="AnalysisTarget" terminationreason="Timeout" executionstatus="OK">
<virusscan_section>
<scanner name="ClamAV" application_version="0.88.2" signature_file_version="3081">
<classification>OK</classification>
<additional_info/>
</scanner>
<scanner name="BDC/Linux-Console" application_version="7.0.2492" signature_file_version="31832">
<classification>OK</classification>
<additional_info/>
</scanner>
<scanner name="AntiVir Workstation" application_version="2.1.10-34" signature_file_version="6.38.0.212">
<classification>OK</classification>
<additional_info/>
</scanner>

</virusscan_section>
<dll_handling_section>
<load_dll dll="c:\3ddd48125388f1e30b3eba53322d13fd.exe" successful="1" address="&#x24;400000" size="32768"/>
<load_dll dll="C:\WINDOWS\system32\ntdll.dll" successful="1" address="&#x24;7C910000" size="749568"/>
<load_dll dll="C:\WINDOWS\system32\kernel32.dll" successful="1" address="&#x24;7C800000" size="1073152"/>
<load_dll dll="C:\WINDOWS\system32\USER32.dll" successful="1" address="&#x24;77D10000" size="589824"/>
<load_dll dll="C:\WINDOWS\system32\GDI32.dll" successful="1" address="&#x24;77EF0000" size="290816"/>
<load_dll dll="C:\WINDOWS\system32\advapi32.dll" successful="1" address="&#x24;77DA0000" size="696320"/>
<load_dll dll="C:\WINDOWS\system32\RPCRT4.dll" successful="1" address="&#x24;77E50000" size="593920"/>
<load_dll dll="C:\WINDOWS\system32\oleaut32.dll" successful="1" address="&#x24;770F0000" size="573440"/>
<load_dll dll="C:\WINDOWS\system32\msvcrt.dll" successful="1" address="&#x24;77BE0000" size="360448"/>
<load_dll dll="C:\WINDOWS\system32\ole32.dll" successful="1" address="&#x24;774B0000" size="1298432"/>
<load_dll dll="C:\WINDOWS\system32\comctl32.dll" successful="1" address="&#x24;5D450000" size="630784"/>
<load_dll dll="C:\WINDOWS\system32\wsock32.dll" successful="1" address="&#x24;71A30000" size="40960"/>
<load_dll dll="C:\WINDOWS\system32\WS2_32.dll" successful="1" address="&#x24;71A10000" size="94208"/>
<load_dll dll="C:\WINDOWS\system32\WS2HELP.dll" successful="1" address="&#x24;71A00000" size="32768"/>
<load_dll dll="C:\WINDOWS\system32\pstorec.dll" successful="1" address="&#x24;5E490000" size="53248"/>
<load_dll dll="C:\WINDOWS\system32\ATL.DLL" successful="1" address="&#x24;76AD0000" size="69632"/>
<load_dll dll="C:\WINDOWS\system32\Wship6.dll" successful="1" address="&#x24;590B0000" size="28672"/>
<load_dll dll="C:\WINDOWS\system32\Secur32.dll" successful="1" address="&#x24;77FC0000" size="69632"/>
</dll_handling_section>
</process>
</processes>
</analysis>
