Details
FileName | |
---|---|
Malware Family | DarkComet |
Date Added | 2016-04-23 03:00:04 |
MD5 | 67c88d238fc5fb0001019dc87d048116 |
Sha256 | 86bd631669e4faa99eaf9e6c3de41ef18591f216a47db4e8d7675b547f806f47 |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
FTPSIZE | 10 |
---|---|
MUTEX | DC_MUTEX-2ASC3PB |
SH9 | 1 |
DIRATTRIB | 6 |
FTPPORT | 21 |
CHIDEF | 1 |
SID | Guest6 |
CHANGEDATE | 1 |
MSGTITLE | error |
FTPROOT | / |
MULTIBIND | 1 |
OFFLINEK | 1 |
KEYNAME | MicroUpdate |
EDTPATH | MSDCSC\msdcsc.exe |
COMBOPATH | 7 |
FILEATTRIB | 6 |
FAKEMSG | 1 |
NETDATA | minigun.no-ip.org:72 |
FTPUPLOADK | 1 |
SH1 | 1 |
FWB | 0 |
PWD | runaway |
SH3 | 1 |
INSTALL | 1 |
SH10 | 1 |
SH6 | 1 |
MSGCORE | 6572726F72203430342E2064336478392E646C6C206E6F2066696C65 |
PERSINST | 1 |
OVDNS | 1 |
SH8 | 1 |
MSGICON | 16 |
CHIDED | 1 |
PERS | 1 |
PDNS | 127.0.0.1:youtube.com |
MELT | 0 |
GENCODE | pxBrs0FqrdNL |
BIND | 1 |
SH7 | 1 |
FTPPASS | hacker911911 |
FTPHOST | ftp.drivehq.com |
FTPUSER | hadesisback |
SH4 | 1 |
SH5 | 1 |
EDTDATE | 16/04/2007 |
Virustotal
53 out of 57 AV Engines identified the sample as Malicious.