Sample details: 974506503cd935cdce493a8f47c0a3b8

Hashes
MD5: 974506503cd935cdce493a8f47c0a3b8
SHA1: 283794591fdd5ff2841936b706e16124cb836f05
SHA256: 41fd1c757801ccbe924c74ac26539d4e187cc4e1b45f971ac16e1e059809471b
SSDEEP: 12288:/XEhPfaeJnwYgn9nWyAht6bUDHkFqTLB9tstCq:P+PfaeJnw9FWyAht3rT/tstC
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Microsoft_Visual_Cpp_8 | YRP/IsPE32 | YRP/IsConsole | YRP/HasDebugData | YRP/IsBeyondImageSize | YRP/HasRichSignature | YRP/maldoc_find_kernel32_base_method_1 | YRP/domain | YRP/IP | YRP/contentis_base64 | YRP/DebuggerException__SetConsoleCtrl | YRP/anti_dbg | YRP/network_udp_sock | YRP/network_tcp_listen | YRP/network_tcp_socket | YRP/network_dns | YRP/escalate_priv | YRP/keylogger | YRP/win_mutex | YRP/win_token | YRP/win_files_operation | YRP/Big_Numbers1 | YRP/RijnDael_AES_CHAR | YRP/RijnDael_AES_LONG | YRP/Str_Win32_Winsock2_Library | FlorianRoth/BTC_Miner_lsass1_chrome_2 |
Source
http://www.eeme7j.win/mule.exe
http://149.255.35.91/mule.exe