Sample details: 40c9b023681cabf01f86886fc59b8c09 --

Hashes
MD5: 40c9b023681cabf01f86886fc59b8c09
SHA1: ce99d125e176ec96e972c1db7cba359a5e25d860
SHA256: 0f40a7511bdedc1a866afc3a91e1abf51476f54975d57a4b9f39c24005fe175e
SSDEEP: 1536:onobv2Ld9mUSQmPQtKJWC1XBmbjp3JzAtbs:o0vKZSQ4yKQC1XUbjp56b
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Cpp_V80_Debug | YRP/Microsoft_Visual_Cpp_80_Debug_ | YRP/Microsoft_Visual_Cpp_80_Debug | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/HasDebugData | YRP/HasModified_DOS_Message | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | YRP/Str_Win32_Wininet_Library |
Source
http://gtechuae.com/3Dha4
http://kuteshop.kienbientech.com/Ozoy/
http://gtechuae.com/3Dha4/
http://uka.me/Oi9tQ0b/
http://tidatechnical.com/HB9SG/
http://www.kuteshop.kienbientech.com/Ozoy/
http://shunji.org/wordpress/NKBI/
Strings
		`.rdata
@.pdata
.idata
@.reloc
D$4dl:p
L$$3L$$
qq+L$D
D$(9D$4
D$ #D$ 
L$D5J&ff
D$h{9Rr
EapVPlahpcwoS55u0CV.pdb
GetPixel
GetStockObject
GDI32.dll
GetPrinterDriverW
WINSPOOL.DRV
GetUrlCacheEntryInfoExW
WININET.dll
DrawTextExW
LoadMenuA
IsWindowEnabled
GetPriorityClipboardFormat
USER32.dll
FlushInstructionCache
FileTimeToSystemTime
GetSystemDirectoryA
GetUserGeoID
GetStringTypeW
GlobalFlags
GetUserDefaultLCID
GetVersion
GetTickCount
GetThreadId
KERNEL32.dll
\WB*Vt
T'@""|
																																																																																																																																																																																																											
k1Qmhm;
\}^QvB
wS:HS@Z
R2M-O!
'kBp\B
9k1Amf
k1Ajgo
[m.9(m
[(m	'	
m)WNPx$c
mC`(mZ^	
m)<JPx>
CKIK\	
m2d(m8
W<#l8#
o(_+!B
|T;y[!
)@+nA)
)DJv*=
<2PGaK
ckb86zc
Krq85z0
1c[I<i
Op6_<W
D4L"j3hw
,ap7JI
J&'jUh
Kq,0^'h
:HJLffO
?G_!M#
/'OV}U
xU	?N,/ 
D4L"j*
3uv%AO
(ufG3<Q
y7fppB
d+Z|xo#
Zf5lhj
p Mg5l
(\`&>U
'8hC7s
s>1/WC
3az)5q
SNS-?]
fDfm	~*a
yBtgT`
(:3r75
c" %bt
'To,pt[
{z'yGo
D\{s(a
m==9T(
(P"}?^
KJv*=s
DV*Uug
0} gfi
#rc=X7\
kb>=[H
Z;4L"j3hw
m9aqhR
y;i>]}
zTtoOG
KKrVs$
DJciP]
>QVb4C
aWv*8)[e
L^4R.u
I_6']2
YLDDz-1-q
!RWv]/
AAvNa|
)lh;9^
	t!j5#
\dRJgm3
tD[WZ/"
j~mCpq
?$XI\"
OaN&Sx
DuCq\X
[Vjp%R
<assembly xmlns="urn:schemas-microsoft-com:asm.v1" manifestVersion="1.0">
</assembly>