Sample details: 178e1f1e597f712ba81c9e9d21c968f9 --

Hashes
MD5: 178e1f1e597f712ba81c9e9d21c968f9
SHA1: 1a1b6a1352ee2af44dfd4e514ee6eb1d3291f444
SHA256: 1b0f25b9bf0c76f9a52d3f5952f47b203e7112c72f8234d51155442bddddd42f
SSDEEP: 3072:lUnLXFpHGTliTqGVuAgsEcpOug6jcuo3GpmFfgF9E5i7jr8BUveOZoMj/VJH8Gcu:qnRJ1VwsEccuBcu9pmAL7UBU1BDcot
Details
File Type: PE32
Yara Hits
YRP/Armadillo_v171 | YRP/Microsoft_Visual_Cpp_v60 | YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional | YRP/Microsoft_Visual_Cpp_50 | YRP/Microsoft_Visual_Cpp_v50v60_MFC | YRP/Armadillo_v171_additional | YRP/Armadillo_v4x | YRP/Microsoft_Visual_Cpp | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasRichSignature | YRP/domain | YRP/url | YRP/contentis_base64 | YRP/screenshot | YRP/keylogger | YRP/win_registry | YRP/win_private_profile | YRP/win_files_operation | YRP/win_hook | YRP/Str_Win32_Winsock2_Library |
Source
http://securedownload2.duckdns.org:7373/docs/WinMTRA.exe