Sample details: d4a4687997a425fc4198f35610d4c424 --

Hashes
MD5: d4a4687997a425fc4198f35610d4c424
SHA1: ad7412b122c1a59b185a37eebbfb9ceb4d0442ad
SHA256: 5bc181664a79d4fafe3c296b1134de920e0dc8b04928b451b5d31f69eb54c06c
SSDEEP: 12288:UQWfTFhi2VHxEoF4dfv8pIh2dJrLr84p17XOzcUptluD/RJn5:UbTfpWoF4JVhgJrLr/17XCw/X
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Microsoft_Visual_Cpp_8 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasDebugData | YRP/IsBeyondImageSize | YRP/HasRichSignature | YRP/maldoc_find_kernel32_base_method_1 | YRP/domain | YRP/contentis_base64 | YRP/anti_dbg | YRP/win_files_operation | YRP/TEAN |
Source
http://194.58.118.65/css.exe
http://194.58.118.65/css.exe