Sample details: 995a252afdde54d23e97bdf60b65571a

Hashes
MD5: 995a252afdde54d23e97bdf60b65571a
SHA1: 1301918fe093cc9d936c1db18bfe34d6fa7b9f86
SHA256: 9d1e5cbecfdd1c4d5dc2fd52170f1b8037e94156333fdcc07d8801547f688d0c
SSDEEP: 12288:nti62WfSm0iEcDsMVTIG3iEIqMZsBOVyXAdLiGkMt726:tiIfEczTdyEIqMC4UAd+GkMtP
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp_8 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasDebugData | YRP/HasRichSignature | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/anti_dbg | YRP/escalate_priv | YRP/screenshot | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/Big_Numbers0 | YRP/CRC32_poly_Constant | YRP/RIPEMD160_Constants | YRP/SHA1_Constants |
Source
http://191.101.180.76/64Kilences.exe
http://191.101.180.76/64Kilences.exe