Sample details: 520e7e5ff5075388c292a30488c0a948 --

Hashes
MD5: 520e7e5ff5075388c292a30488c0a948
SHA1: cac60d28b71a730f72637f331321b49642764626
SHA256: 810dfccaa37c1c67e2e8ebbd670ee19014acfb21b2ad61e67e5ff02f45beeacf
SSDEEP: 768:phpkEYWCfm22Svwd3EaEcbtCfs78XpSIH0:XDYWz2EdUapfw5SS0
Details
File Type: PE32
Yara Hits
YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasRichSignature | YRP/domain | YRP/contentis_base64 | FlorianRoth/DragonFly_APT_Sep17_3 |
Strings
		!This program cannot be run in DOS mode.
.rdata
@.data
.reloc
PSSSSSS
PSSSSSS
SVh^0@
hBrLCSWW
hBrLCSWU
9x v.S
@_^][YY
9x v3S