Sample details: b128d4aeda16b1c5ff7c68143f61a283

Hashes
MD5: b128d4aeda16b1c5ff7c68143f61a283
SHA1: 694fab565953aac9c20c53c6e7c9cc32c872ae86
SHA256: 4669345374d3c14e30ea9000b29a0a674e4a1bffdb9ca033ac0b707317a71feb
SSDEEP: 6144:hBH0KAcxj5fymWdFzl9lIwZeQ3sc3nC3h8R/Z/Kn6bbvjK1gnhl:3H05ctV0dzEwZecWh85ZCKv21y
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 |
Source
http://gg.usdipc.com/fot.exe
http://gg.usdipc.com/fot.exe