Details
Malware Family DarkComet
Date Added March 23, 2015, 8:29 p.m.
MD5 df10f6da1c77d5f0375ba1215802ae56
Sha256 386cd21c1c2831a57eead1cd9c82a806560e70077b5a49b7456fd97091267ed4
Robot Robots lovingly delivered by robohash.org
Config Sections
FTPKeyLogs
OfflineKeylogger
FTPHost
FTPSize
CampaignID Guest16
FTPPort
FTPRoot
FTPPassword
Version #KCMDDC4#
Mutex DC_MUTEX-AAT1URT
Domains 173.78.65.202:1604
Gencode 6*W6Yy0VW$gM
Password ihdfihndfuihafdjuhnsadfjhasdfohasdfkljhsdfkljhdsfibhqwfiouqwbhuqhevuefdhudshfgviushdfufhqwefonhdoiubheqrguhqwfoinqduphqrguohqwdiolubnqwer9uiqroiulqbhwdfkjqbnsdfvilubqegrfqwqdwegefgrweherjhrterytjhrytejherjhefghdegfherthrethrthrthfgh
FTPUserName
FireWallBypass
Advertising
VirusTotal

49 out of 54 AV's Identified the sample as Malicious

Virus Total Report

Domain Data
Domain IP Country Code
Geo Location
Yara Rules
Comments
comments powered by Disqus