Sample details: efa42fd9b1a578802b846a5ac33729e4

Hashes
MD5: efa42fd9b1a578802b846a5ac33729e4
SHA1: 2b55bf6507b01a11b5c05c3de7e280f2912509e1
SHA256: 6bfd90ff3ee65b05e54934c553999e6c51fc3d8e164e5277083b82a9275fced0
SSDEEP: 3072:QBeMCVy40hsbOeOyuFDPBK2IGn8UJRSiTngJmsvUdzfEPudPA8+btMc7jpUoOtzs:bMwhwyAw92UungJ9wWnxbtR7FUoiuAjI
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsBeyondImageSize | YRP/domain | YRP/IP | YRP/contentis_base64 |
Source
http://adimma.xyz/Phantom/Payment%202018.exe