Sample details: 61eea98917caa013fc6a80229ec308b3 --

Hashes
MD5: 61eea98917caa013fc6a80229ec308b3
SHA1: 725214aeb98fa724486f48636ae0272bce679819
SHA256: 65bde231396185b1211feb6c11ee64b94688bf11278745d6db24ce6786a68242
SSDEEP: 1536:62Gsfd8S8Z64ctqTHFPY3B5/JgAITu3S4cbTygN3k4wNlXsw0+X9AkVcsg8b1:9L8SdxEHC3+ugbTykk4wHswLX9Vb1
Details
File Type: MS-DOS
Added: 2019-05-30 04:59:52
Yara Hits
YRP/MPRESS_V200_V20X_MATCODE_Software_20090423 | YRP/yodas_Protector_v1033_dllocx_Ashkbiz_Danehkar_h | YRP/mpress_2_xx_x86 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/IsBeyondImageSize | YRP/HasModified_DOS_Message | YRP/powershell | YRP/maldoc_getEIP_method_1 | YRP/domain | YRP/IP | YRP/contentis_base64 | YRP/suspicious_packer_section |
Source
http://103.248.103.108:6325/ma/sqlbrowsers.exe