Details
Malware Family Xtreme
Date Added March 23, 2015, 8:29 p.m.
MD5 6888669cf5f701205535080df007ec50
Sha256 79fd35c562e394057111f01da8891197006b969282ae404842bef129311f1b45
Robot Robots lovingly delivered by robohash.org
Config Sections
Domain4 :0
Install Dir awwq
Group Servers
Msg Box Text
FTP Password ftppass
Install Name Server.exe
FTP Server ftp.ftpserver.com
FTP UserName
ID Server
Domain3 :0
Version 3.5Private
Mutex HaCer
HKLM HKLM
ActiveX Key {5460C4DF-B266-909E-CB58-E32B79832EB2}
Domain2 :0
Domain1 127.0.0.1:81
HKCU HKCU
FTP Folder
Injection notepad.exe
Domain5 :0
Msg Box Title
Advertising
VirusTotal

44 out of 46 AV's Identified the sample as Malicious

Virus Total Report

Domain Data
Domain IP Country Code
Geo Location
Yara Rules
Comments
comments powered by Disqus