Sample details: 5561f6e862f7231faf82bcf13ad96cae

Hashes
MD5: 5561f6e862f7231faf82bcf13ad96cae
SHA1: 752f27230a13b578a03f1337a3e99d17d85539a0
SHA256: 75e5eb3a379ef029df6b376ad09336abc2f299847ab2704e450285be8690df55
SSDEEP: 3072:lhuRTAcSdEGwArUwTWX0+tokAWhgAkjpv5DFOmsNYhlL998Xb5ywBQi56J0lRMkp:fcTAc8EWrtTWhTvYJTtWIwx54
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/IsBeyondImageSize | YRP/domain | YRP/IP | YRP/contentis_base64 |
Source
http://omann.ir/swag.exe
http://omann.ir/swag.exe