Details
Robot
FileName
Malware Family CyberGate
Date Added 2015-11-07 14:30:22
MD5 8495773b87ed12c9436037669b1f2422
Sha256 4f12aa07c5978a9a4023062264353cf4bb27f584a87370e070fe41f155157f9f
Robot Robots lovingly delivered by robohash.org
Advertising
Config Data
FTPPassword +
CampaignID vtima
Password abcd1234
USBSpread TRUE
FTPDirectory ./logs/
FTPAddress ftp.server.com
InstallDir install
Persistance FALSE
InstallMessageTitle ttulo da mensagem
KeyloggerBackspace TRUE
HideFile TRUE
Mutex ***MUTEX***
Domain 127.0.0.1,mandahuevos.no-ip.org,
FTPPort 21
REGKeyHKCU HKCU
MessageBoxIcon 16
Port 81,81,
CyberGateVersion
StartupPolicies Policies
REGKeyHKLM HKLM
FTPUserName ftp_user
ChangeCreationDate TRUE
MeltFile FALSE
InstallFileName explorer.exe
KeyloggerEnableFTP FALSE
FTPInterval 30
InstallMessageBox texto da mensagem
InstallFlag TRUE
ActiveXStartup {08B0E5JF-4FCB-11CF-AAA5-00401C6XX500}
EnableMessageBox FALSE
ActivateKeylogger TRUE
MessageBoxButton 0
Virustotal

0 out of 0 AV Engines identified the sample as Malicious.

Virustotal Report