Details
FileName | |
---|---|
Malware Family | DarkComet |
Date Added | 2016-04-22 06:28:28 |
MD5 | ccc24b9f771ea2dd6a7aaec408c975f3 |
Sha256 | 0ff45b20deb6a041566e8fd3efcb6d8e38ca5d50bd0aa1a9c0d8cbe5105ec8e6 |
Robot | Robots lovingly delivered by robohash.org |
Advertising
Config Data
FTPSIZE | 200 |
---|---|
SH10 | 1 |
MUTEX | DC_MUTEX-7K0F973 |
SH9 | 1 |
DIRATTRIB | 6 |
FTPPORT | 21 |
CHIDEF | 1 |
FAKEMSG | 1 |
SID | Guest16 |
OVDNS | 1 |
BIND | 1 |
SH8 | 1 |
MSGICON | 0 |
SH6 | 1 |
CHIDED | 1 |
FTPROOT | / |
MSGTITLE | HATA |
PERS | 1 |
OFFLINEK | 1 |
MSGCORE | 50726F6772616D2053697374656D696E697A6C65205579756D6C75204465F0696C204CFC7466656E2047FC6E63656C6C6579696E202121 |
CHANGEDATE | 1 |
KEYNAME | MicroUpdate |
PDNS | zzcc1212.codns.com:localhost|121.67.32.98:localhost |
PERSINST | 1 |
EDTPATH | MSDCSC\msdcsc.exe |
MELT | 0 |
COMBOPATH | 5 |
FILEATTRIB | 6 |
GENCODE | 6Pp5QvHDRWNl |
NETDATA | hackingbypasses.myftp.org:1604|109.193.123.155:1604 |
FTPUPLOADK | 1 |
SH1 | 1 |
FWB | 0 |
SH7 | 1 |
FTPPASS | 112730500 |
FTPHOST | ftp.hospitalsanbernardo.com.ar |
PWD | 112730500 |
FTPUSER | root@hospitalsanbernardo.com.ar |
SH4 | 1 |
SH5 | 1 |
EDTDATE | 16/04/2007 |
SH3 | 1 |
INSTALL | 1 |
Virustotal
0 out of 0 AV Engines identified the sample as Malicious.