Details
FileName | |
---|---|
Malware Family | DarkComet |
Date Added | 2015-11-07 14:35:33 |
MD5 | 845b8a83805e289a5e1b541cc2687d00 |
Sha256 | 54ddac0500d7dea3090cbb82b5ecafae21704c3338e736fd9156c23097d5477f |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
FTPSIZE | 10 |
---|---|
SID | AbadY-Gz |
SH6 | 1 |
SH9 | 1 |
DIRATTRIB | 38 |
FTPPORT | 21 |
CHIDEF | 1 |
SH10 | 1 |
SH8 | 1 |
MELT | 0 |
CHANGEDATE | 0 |
CHIDED | 1 |
FTPROOT | /logs |
PERS | 1 |
OFFLINEK | 1 |
FTPUPLOADK | 1 |
KEYNAME | MicroUpdate |
PERSINST | 0 |
EDTPATH | MSDCSC\msdcsc.exe |
COMBOPATH | 7 |
FILEATTRIB | 38 |
GENCODE | V4+MLj3hTL23 |
NETDATA | test.no-ip.biz:1177 |
MUTEX | DC_MUTEX-F54S21D |
SH1 | 1 |
FWB | 1 |
SH7 | 1 |
FTPPASS | bouwahi |
FTPHOST | ftp.drivehq.com |
PWD | hacking |
FTPUSER | terrorb |
SH4 | 1 |
SH5 | 1 |
EDTDATE | 16/04/2007 |
INSTALL | 1 |
Virustotal
48 out of 53 AV Engines identified the sample as Malicious.