Details
FileName | |
---|---|
Malware Family | DarkComet |
Date Added | 2015-08-16 15:12:57 |
MD5 | 2a881b327c1c76286ce477af282ffb0a |
Sha256 | b19be57483fb01966ce441f58dcca03edfed668886e1f2157a4ed2096ff9eebd |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
FTPSIZE | |
---|---|
SH10 | 1 |
MUTEX | DC_MUTEX-N0DPVWL |
SH9 | 1 |
DIRATTRIB | 6 |
PERSINST | 1 |
CHIDEF | 1 |
GENCODE | DYa2bhuXK7jm |
SID | Guest16 |
NETDATA | 83.79.164.149:1604 |
SH8 | 1 |
MELT | 0 |
CHANGEDATE | 0 |
CHIDED | 1 |
FTPROOT | |
MSGTITLE | Dangerous file |
FILEATTRIB | 6 |
OFFLINEK | 1 |
MSGCORE | 4572726F7220504F500D0A4572726F7220504F500D0A4572726F7220504F500D0A4552524F5220504F500D0A4552524F5220504F50 |
KEYNAME | MicroUpdate |
FTPPORT | |
EDTPATH | MSDCSC\msdcsc.exe |
MSGICON | 48 |
COMBOPATH | 7 |
PERS | 1 |
FAKEMSG | 1 |
BIND | 1 |
FTPUPLOADK | |
SH1 | 1 |
FWB | 0 |
SH7 | 1 |
FTPPASS | |
FTPHOST | |
PWD | |
FTPUSER | |
SH5 | 1 |
EDTDATE | 16/04/2007 |
SH3 | 1 |
INSTALL | 1 |
Virustotal
48 out of 56 AV Engines identified the sample as Malicious.