Sample details: 74c236ed670bad382e3c9e5f4c69891f

Hashes
MD5: 74c236ed670bad382e3c9e5f4c69891f
SHA1: 1978db24ccfbae1577a6c9514e493f09834023ab
SHA256: 8a9aeda9a9f1e5460d01f14f4fba5754a6740fca6560a04a47b4cae3ddc81831
SSDEEP: 3072:fwJ52Y7ZoH5XJazQ4WQ4ZCx9swNHevj5jDOIuKGrHgT9IPyUBA7d/8/rFppINn83:fwHyszq48wJe17tQWI6UGINGg
Details
File Type: PE32
Yara Hits
YRP/Nullsoft_PiMP_Stub_SFX | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasRichSignature | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/escalate_priv | YRP/screenshot | YRP/win_registry | YRP/win_token | YRP/win_private_profile | YRP/win_files_operation | YRP/CRC32_poly_Constant |
Source
http://5.101.149.8/ugobuild.exe