Details
FileName | |
---|---|
Malware Family | NanoCore |
Date Added | 2015-09-24 17:57:48 |
MD5 | 503f7f9a46d045f0a4f8ae3f458dc4a2 |
Sha256 | 0cfb54a84d6f142c0e28fd6567b847b6dc41cb4937a5d5d6a5417c2bdcce8754 |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
SetCriticalProcess | 00 |
---|---|
RestartDelay | 5000 |
Group | Skype |
Domain2 | 127.0.0.1 |
ConnectDelay | 4000 |
UseCustomDNS | 01 |
ClearAccessControl | 00 |
BypassUAC | 00 |
PrimaryDNSServer | 8.8.8.8 |
Mutex | 696d656f75740788130000 |
Version | 1.2.2.0 |
PreventSystemSleep | 01 |
RequestElevation | 00 |
ClearZoneIdentifier | 01 |
RunOnStartup | 01 |
Domain1 | jpegfile@no-ip.biz |
EnableDebugMode | 00 |
Port | 1064 |
BackupDNSServer | 8.8.4.4 |
Virustotal
29 out of 54 AV Engines identified the sample as Malicious.