Details
Malware Family DarkComet
Date Added Jan. 18, 2018, 6:25 a.m.
MD5 25dafcac1c082b3bf6eb5f61db5958cf
Sha256 499bd66954412cff2fde69e2fb4a0a343745c970cb71f005fb72c1aa78a533f5
Robot Robots lovingly delivered by robohash.org
Config Sections
CHIDED 1
FTPPORT
FWB 0
SH6 1
FTPROOT
KEYNAME MicroUpdate
MUTEX DC_MUTEX-CZXE44H
MELT 1
INSTALL 1
SID Guest16
SH4 1
FTPPASS
PERSINST 1
DIRATTRIB 6
CHIDEF 1
SH3 1
FTPUSER
SH5 1
COMBOPATH 7
FTPHOST
FILEATTRIB 6
FTPUPLOADK
EDTDATE 17/06/2015
PWD
NETDATA 127.0.0.1:1604
OFFLINEK 1
GENCODE wxoL6A7JfmAf
FTPSIZE
CHANGEDATE 1
EDTPATH MSDCSC\explorer.exe
Advertising
VirusTotal

64 out of 67 AV's Identified the sample as Malicious

Virus Total Report

Domain Data
Domain IP Country Code
127.0.0.1 0
Geo Location
Yara Rules
Comments
comments powered by Disqus