Sample details: 1058d6b45a81fec42cedc802f7532e73

Hashes
MD5: 1058d6b45a81fec42cedc802f7532e73
SHA1: 386933f8a2d7c2199f81a3e55a0b6ad30ad20209
SHA256: e7117a85e809d88e5ac81a7abc0d137b23105fa7a8c0d9870dc0e4507dd0449a
SSDEEP: 12288:nti62WfSm0iEcVkyTNlf4C8RlWpLn2eCgOhVZl6x+nDnb9gTj:tiIfEcV9TUC8rc2zg6VZl9n9sj
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp_8 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasDebugData | YRP/HasRichSignature | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/anti_dbg | YRP/escalate_priv | YRP/screenshot | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/Big_Numbers0 | YRP/CRC32_poly_Constant | YRP/RIPEMD160_Constants | YRP/SHA1_Constants |
Source
http://191.101.180.76/32Kilences.exe
http://191.101.180.76/32Kilences.exe