Details
Malware Family DarkComet
Date Added Oct. 4, 2015, 9:40 a.m.
MD5 626d13c8352d24ba781d89d5903217ed
Sha256 02b6936ab5ae697dfc91df915bcf0d00bef1d7e6c5addd8d964cc808f75286ac
Robot Robots lovingly delivered by robohash.org
Config Sections
MSGICON 16
MSGTITLE
FTPPORT
FWB 0
FTPROOT
MUTEX DC_MUTEX-WN14EZE
SID Guest16
FTPPASS
FTPUSER
FTPHOST
MSGCORE C7EDE0E5F8FC20FF20F2E5E1FF20F0E0E7E2E5EB20F4E8E320F7E8F2E5F0E8F2FC
FTPUPLOADK
FAKEMSG 1
PWD
NETDATA 127.0.0.1:1604
OFFLINEK 1
GENCODE xFs8n4JEJqkm
FTPSIZE
Advertising
VirusTotal

50 out of 57 AV's Identified the sample as Malicious

Virus Total Report

Domain Data
Domain IP Country Code
127.0.0.1 0
Geo Location
Yara Rules
Comments
comments powered by Disqus