Sample details: 96485e7338ca6441b3cf3b603949b2b3

Hashes
MD5: 96485e7338ca6441b3cf3b603949b2b3
SHA1: ecff355e2e2f57c43cfa4004b5bf4cfa0263d709
SHA256: 964686e8e59be4dd8212e8bb30b32dc7b657bb1b67ad857bd6ebc4abae9e044e
SSDEEP: 12288:VzFW4ORU/2BxYP/6YBKUzjEMvLYJBktzpwMjztIb:VzFW4jA4xBKCjE4YJUzpn
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/IsBeyondImageSize | YRP/domain | YRP/IP | YRP/contentis_base64 | YRP/suspicious_packer_section |
Source
http://193.124.117.153/crypt/a.exe
http://193.124.117.153/crypt/a.exe