Sample details: 1cd13c94f70a672f8dc30be37ba93232

Hashes
MD5: 1cd13c94f70a672f8dc30be37ba93232
SHA1: 84a9f82d0173e2c051bbc8a4f83a47bd1b4ae8b7
SHA256: 6f9fcfaa7d942dea200107857c51c4fbcd7ac5922f090a1b9dc91e0e67e03fa3
SSDEEP: 6144:gw0KZs0HiUA3YOx9mbbjTAlbyAC1nmuItN8qR:CKK+AZ9mH8+ACEuItzR
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/IsBeyondImageSize | YRP/domain | YRP/IP | YRP/contentis_base64 |
Source
http://omann.ir/eng.exe
http://omann.ir/eng.exe