Sample details: 6a50e312a6e7fe3974d6ff435c56d4a2 --

Hashes
MD5: 6a50e312a6e7fe3974d6ff435c56d4a2
SHA1: 528d69d74e211c7d64c7e57cecf45873bc390cdb
SHA256: 85f910041fbae522ae95b60f530df334bd47564b16a24858f67d42ed7eafc4c3
SSDEEP: 24576:2RmJkcoQricOIQxiZY1iaoSSE3FBvznt3xFc4/lJwKcTqqY:TJZoQrbTFZY1iaPSE3FBvR3HcwJL
Details
File Type: PE32
Yara Hits
YRP/VC8_Microsoft_Corporation | YRP/Microsoft_Visual_Cpp_8 | YRP/AutoIt_2 | YRP/IsPE32 | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasRichSignature | YRP/AutoIt | YRP/maldoc_getEIP_method_1 | YRP/domain | YRP/IP | YRP/contentis_base64 | YRP/AutoIT_compiled_script | YRP/anti_dbg | YRP/inject_thread | YRP/network_http | YRP/escalate_priv | YRP/screenshot | YRP/keylogger | YRP/win_registry | YRP/win_token | YRP/win_files_operation | YRP/CRC32_poly_Constant | YRP/CRC32_table | YRP/MD5_Constants | YRP/Str_Win32_Winsock2_Library | YRP/Str_Win32_Wininet_Library | YRP/Str_Win32_Internet_API | YRP/Str_Win32_Http_API |
Source
http://spectrocoinss.com/file/pussies.exe