Details
Malware Family DarkComet
Date Added July 13, 2017, 6:25 a.m.
MD5 22f2b4637b38f844c6f6f63e46611271
Sha256 a47dbc702d95199c01f2d74a964aa675ba2a9e8105dfe40aa90b583f333277dc
Robot Robots lovingly delivered by robohash.org
Config Sections
MSGICON 0
MSGTITLE Welcome
FTPPORT 21
FWB 0
FTPROOT /haha/fake/directory/
KEYNAME MicroUpdate
MUTEX DC_MUTEX-LZTM6JA
MELT 0
INSTALL 1
SID MrRobotIsFuckingAwesome
FTPPASS IsAwesome
PERSINST 0
DIRATTRIB 0
FTPUSER Mr.Robot
COMBOPATH 7
FTPHOST Hackforums.net
FILEATTRIB 0
FTPUPLOADK 1
FAKEMSG 1
EDTDATE 16/04/2007
PWD
NETDATA Mr.RobotIsAwesome:420|ShoutouttoCharger:7777
MSGCORE 57656C636F6D6520746F204461726B436F6D6574205241542E0D0A496620796F75207365652074686973206D6573736167652C206974206D65616E73207468652073747562207375636365737366756C6C792072756E7320616E6420796F752077696C6C206170656172200D0A696E20746865206D61737465722075736572206C6973742E0D0A
OFFLINEK 1
GENCODE unw6mynMJKfz
FTPSIZE 10
CHANGEDATE 0
EDTPATH MSDCSC\msdcsc.exe
Advertising
VirusTotal

This hash does not exist in virustotal

Domain Data
Domain IP Country Code
Mr.RobotIsAwesome 0
ShoutouttoCharger 0
Geo Location
Yara Rules
Comments
comments powered by Disqus