Sample details: 5029198b44fb643abc3cc2eb61694559

Hashes
MD5: 5029198b44fb643abc3cc2eb61694559
SHA1: 8d9448fe66203dd72c8780a4fffd845691a02ed6
SHA256: c1bd595f5d791221b7ea8a155791728f86325d7dadcd55be7cb047f2ba40a11f
SSDEEP: 24576:MzH+0LEtgVypA1J6YyDaP/u8hxbsJ2/3jJkUe8qZPsJv469/dU/h:MrH4XGiOGGFLfe8qVsJvlM
Details
File Type: PE32
Yara Hits
YRP/Microsoft_Visual_Studio_NET | YRP/Microsoft_Visual_C_v70_Basic_NET_additional | YRP/Microsoft_Visual_C_Basic_NET | YRP/Microsoft_Visual_Studio_NET_additional | YRP/Microsoft_Visual_C_v70_Basic_NET | YRP/NET_executable_ | YRP/NET_executable | YRP/NETexecutableMicrosoft | YRP/IsPE32 | YRP/IsNET_EXE | YRP/IsWindowsGUI | YRP/IsPacked | YRP/HasOverlay | YRP/HasDigitalSignature | YRP/domain | YRP/IP | YRP/url | YRP/contentis_base64 |
Source
http://ronqpeng.com/new/tyuvsn.exe
http://ronqpeng.com/new/tyuvsn.exe