Sample details: 478374c2ce1895c0f28aa125dda4fa22 --

Hashes
MD5: 478374c2ce1895c0f28aa125dda4fa22
SHA1: 643fed835f4e75a7e63f99022c148a29b384c289
SHA256: e948187b64572621b59817126f0396857a1608641f83d192f15ee04f7bef1614
SSDEEP: 98304:IztdEECQ9fQ+O+ZCANW6c7K9y7TVmnrrvcb:IJ2Eo5+ZDvaK9yNmnrQ
Details
File Type: PE32
Added: 2018-08-04 00:52:50
Yara Hits
YRP/Safeguard_103_Simonzh | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasDigitalSignature | YRP/HasRichSignature | YRP/maldoc_find_kernel32_base_method_1 | YRP/maldoc_getEIP_method_1 | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 | YRP/VM_Generic_Detection | YRP/DebuggerHiding__Thread | YRP/anti_dbg | YRP/antivm_bios | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/MD5_Constants | YRP/RijnDael_AES |
Source
http://s3.amazonaws.com/dl.itranslator.info/files/itranslator044.exe
Strings