Sample details: bd5adef2e9f4d773973fa118c32df92d

Hashes
MD5: bd5adef2e9f4d773973fa118c32df92d
SHA1: 1f918c0b60a6ce2a81f04d83408e6696412cb912
SHA256: 96484e8a5960b699d500db75f3413289c6ce5fa6ccd4bfed3b809ffec8b88d4e
SSDEEP: 12288:76hS/IUfLhJ4t0qdPUedG1HwEv6CcnvylKKm+tgF5A2KC9qosch:760/IUf/4t0qdPUedGrL/uAzC9Qch
Details
File Type: PE32+
Yara Hits
YRP/Microsoft_Visual_Cpp_80_DLL | YRP/IsPE64 | YRP/IsConsole | YRP/IsBeyondImageSize | YRP/domain | YRP/IP | YRP/contentis_base64 | YRP/VM_Generic_Detection | YRP/DebuggerException__SetConsoleCtrl | YRP/ThreadControl__Context | YRP/SEH__vectored | YRP/Check_OutputDebugStringA_iat | YRP/anti_dbg | YRP/network_udp_sock | YRP/network_tcp_listen | YRP/network_tcp_socket | YRP/network_dns | YRP/escalate_priv | YRP/keylogger | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/RijnDael_AES_CHAR | YRP/RijnDael_AES_LONG | YRP/Str_Win32_Winsock2_Library | FlorianRoth/BTC_Miner_lsass1_chrome_2 |
Source
http://185.117.73.105/panel/mr/audiodg.exe
http://185.117.73.105/panel/mr/audiodg.exe