Details
Robot
FileName
Malware Family Xtreme
Date Added 2019-02-05 06:25:04
MD5 99215adb3d924f52d69beab6981791eb
Sha256 369a5a40d4b63c0b5e8a56e6984f0666110c64c097b4c4234b36d13790c4172f
Robot Robots lovingly delivered by robohash.org
Advertising
C2 Data
HKCU HKCU
ActiveX Key {5460C4DF-B266-909E-CB58-E32B79832EB2}
Injection %NOINJECT%
FTP Server ftp.ftpserver.com
Group New
Domain2 :0
Version 3.2
Msg Box Title Error
Mutex ((Mutex))
ID hacked
Domain3 :0
FTP Password ftppass
Domain4 :0
Install Name Server.exe
Msg Box Text An unexpected error occurred when starting the program.
Install Dir InstallDir
Domain1 opstin.spdns.eu:88
Domain5 :0
FTP UserName ftpuser
HKLM HKLM
FTP Folder
Virustotal

61 out of 67 AV Engines identified the sample as Malicious.

Virustotal Report

C2 Information
Domain FQDN IP Country Code
ddns.net anees123.ddns.net 0