MalwareConfig
Details
<table class="table table-striped table-bordered table-sm">
<tr>
<th>FileName</th>
<td><a href="/stats//">ZG9zarm7</a></td>
</tr>
<tr>
<th>Malware Family</th>
<td><a href="/stats//">Mirai</a></td>
</tr>
<tr>
<th>Date Added</th>
<td>2022-07-12 11:10:56.896000</td>
</tr>
<tr>
<th>MD5</th>
<td>9ad9edffe806092ee96ba95e4ff9efce</td>
</tr>
<tr>
<th>Sha256</th>
<td>4e6f7550f000033e37a9d6cec8cc28dc70afb30c33b25ab526334fdf89652f6e</td>
</tr>
<tr>
<th>Robot</th>
<td>Robots lovingly delivered by <a href="https://robohash.org">robohash.org</a></td>
</tr>
</table>
</div>
</div>
</div>
</div>
</div>
</div>
<div class="row mt-5">
<div class="col">
<div class="card">
<div class="card-header">
Advertising
</div>
<div class="card-body">
<!-- ducktoolkit-leaderboard -->
<ins class="adsbygoogle"
style="display:inline-block;width:728px;height:90px"
data-ad-client="ca-pub-1435553701793282"
data-ad-slot="1601555780"></ins>
</div>
</div>
</div>
</div>
<div class="row mt-5">
<div class="col">
<div class="card">
<div class="card-header">
Config Data
</div>
<table class="table table-striped table-bordered table-sm">
<tr>
<th>Commment</th>
<td>The C2 extraction uses a best effort xor decryption. There may be issues with some xor keys like 0x78</td>
</tr>
<tr>
<th>C2</th>
<td>['204.76.203.95', '194.31.98.119']</td>
</tr>
<tr>
<th>xor</th>
<td>0xea</td>
</tr>
</table>
</div>
</div>
</div>
<div class="row mt-5">
<div class="col">
<div class="card">
<div class="card-header">
Virustotal
</div>
<div class="card-body">
<p>39 out of 61 AV Engines identified the sample as Malicious.</p>
<p><a href="https://www.virustotal.com/gui/file/4e6f7550f000033e37a9d6cec8cc28dc70afb30c33b25ab526334fdf89652f6e/detection/f-4e6f7550f000033e37a9d6cec8cc28dc70afb30c33b25ab526334fdf89652f6e-1657618729">Virustotal Report</a></p>
</div>
</div>
</div>
</div>