Sample details: 63be5c3e1f60dce83c8806b062360941 --

Hashes
MD5: 63be5c3e1f60dce83c8806b062360941
SHA1: 824a83750374a2642562a0323dc1ea84c7372c6e
SHA256: 7f771399a9e74b2560b648ed0d21141a8ef963774ce9d0fba98f77fc193d51cf
SSDEEP: 6144:vQRoU++mgZwohByss/Nlihb4cU5aRQ/9sBaHJdD:vQ+UggZzGU0r5aRQ/8apdD
Details
File Type: PE32
Yara Hits
YRP/suspicious_packer_section | YRP/contentis_base64 | YRP/domain | YRP/IP | YRP/NETexecutableMicrosoft | YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/IsBeyondImageSize |
Source
http://myfollowingso.com/vwies/fhgngbc.exe
Strings