Warning! We are currently in recovery mode. The complete archive is not available.

Sample details: 00c28cee9c6874302982045b5faff846 --

Hashes
MD5: 00c28cee9c6874302982045b5faff846
SHA1: 3aac1dfbbc7d6fb67d751fd8cb19eb67662415e0
SHA256: 2fb0af0e0f164251f3c4a3cf24537ea4060dd897a497de68717edf018beaff47
SSDEEP: 96:H1B+uka+0p6PxdYfhuj4OyZ3ARadxF+phSKl8Q9QEJF5/E1CyvM:3Hkop6PxlYlA8zgS0Qg/E90
Details
File Type: PE32+
Yara Hits
YRP/IsPE64 | YRP/IsWindowsGUI | YRP/HasDebugData | YRP/IsBeyondImageSize | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/Big_Numbers1 | FlorianRoth/DragonFly_APT_Sep17_3 |
Strings
		!This program cannot be run in DOS mode.
`.data
.pdata
@.rsrc
@.reloc
UuidCreate
Elevated_MpMiniSigStub.pdb
@SWAUAWH
(A_A]_[
H9	t>H
\$ L9\$ 
D$ x#H
f9t$0tfH