Details
Robot
FileName
Malware Family Xtreme
Date Added 2019-03-06 06:25:21
MD5 bd7b2b345cc7cdce673e7719e2469727
Sha256 1225fbd95027e105efd7dc303b9d233ad8d98f668e3aec7a7a03479749c43d7f
Robot Robots lovingly delivered by robohash.org
Advertising
C2 Data
HKCU HKCU
ActiveX Key {5460C4DF-B266-909E-CB58-E32B79832EB2}
Injection %DEFAULTBROWSER%
FTP Server ftp.ftpserver.com
Group Servers
Domain2 :0
Version 3.6 Private
Msg Box Title Erro
Mutex ((Mutex))
ID Server
Domain3 :0
FTP Password ftppass
Domain4 :0
Install Name Server.exe
Msg Box Text Ocorreu um erro inesperado ao iniciar o programa.
Install Dir InstallDir
Domain1 127.0.0.1:81
Domain5 :0
FTP UserName
HKLM HKLM
FTP Folder
Virustotal

63 out of 72 AV Engines identified the sample as Malicious.

Virustotal Report

C2 Information
Domain FQDN IP Country Code
ddns.net cometdb.ddns.net 128.199.50.200 SG