× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: b2416dc0a4f0d3303fa70fb5c1f975638eb25da85a272a9d7cc0a19b2d0624ae
File name: YnHub 1.0362
Detection ratio: 0 / 57
Analysis date: 2015-08-18 15:39:36 UTC ( 1 aasta, 11 kuud ago )
Antivirus Result Update
Ad-Aware 20150822
AegisLab 20150821
Yandex 20150821
AhnLab-V3 20150821
Alibaba 20150821
ALYac 20150822
Antiy-AVL 20150822
Arcabit 20150822
Avast 20150822
AVG 20150822
Avira (no cloud) 20150822
AVware 20150822
Baidu-International 20150821
BitDefender 20150822
Bkav 20150821
ByteHero 20150822
CAT-QuickHeal 20150821
ClamAV 20150822
CMC 20150819
Comodo 20150822
Cyren 20150822
DrWeb 20150822
Emsisoft 20150822
ESET-NOD32 20150821
F-Prot 20150822
F-Secure 20150821
Fortinet 20150822
GData 20150822
Ikarus 20150821
Jiangmin 20150820
K7AntiVirus 20150821
K7GW 20150821
Kaspersky 20150822
Kingsoft 20150822
Malwarebytes 20150821
McAfee 20150822
McAfee-GW-Edition 20150822
Microsoft 20150821
eScan 20150822
NANO-Antivirus 20150822
nProtect 20150821
Panda 20150821
Qihoo-360 20150822
Rising 20150821
Sophos AV 20150822
SUPERAntiSpyware 20150822
Symantec 20150821
Tencent 20150822
TheHacker 20150820
TotalDefense 20150822
TrendMicro 20150822
TrendMicro-HouseCall 20150822
VBA32 20150821
VIPRE 20150822
ViRobot 20150821
Zillya 20150820
Zoner 20150822
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Freeware

Publisher -
Product YnHub 1.0362
Original name YnHub.exe
Internal name YnHub 1.0362
File version 1.0.362.898
Description YnHub 1.0362
Comments http://www.ynhub.org/
Packers identified
F-PROT UPX
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 1992-06-19 22:22:17
Entry Point 0x00228C10
Number of sections 3
PE sections
PE imports
VirtualFree
ExitProcess
VirtualProtect
LoadLibraryA
VirtualAlloc
GetProcAddress
RegCloseKey
ImageList_Add
SaveDC
CoInitialize
VariantCopy
ShellExecuteA
VerQueryValueA
timeGetTime
OpenPrinterA
Number of PE resources by type
RT_STRING 22
RT_BITMAP 11
RT_RCDATA 10
RT_GROUP_CURSOR 7
RT_ICON 7
RT_CURSOR 7
RT_DIALOG 1
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 59
ENGLISH US 8
SWEDISH 1
PE resources
ExifTool file metadata
LegalTrademarks
None

SubsystemVersion
4.0

Comments
http://www.ynhub.org/

LinkerVersion
2.25

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.0.362.898

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

Description
YnHub 1.0362

FileDescription
YnHub 1.0362

CharacterSet
Windows, Latin1

InitializedDataSize
49152

EntryPoint
0x228c10

OriginalFileName
YnHub.exe

MIMEType
application/octet-stream

LegalCopyright
Freeware

FileVersion
1.0.362.898

TimeStamp
1992:06:19 23:22:17+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
YnHub 1.0362

ProductVersion
1.0.362

UninitializedDataSize
1511424

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
-

CodeSize
749568

ProductName
YnHub 1.0362

ProductVersionNumber
1.0.362.898

FileTypeExtension
exe

ObjectFileType
Executable application

Compressed bundles
File identification
MD5 05cfcfab9561b8c1fc8366fa4a17b6c6
SHA1 e55ae98ab9e3d9ba5a6a5bb588265a7b30833935
SHA256 b2416dc0a4f0d3303fa70fb5c1f975638eb25da85a272a9d7cc0a19b2d0624ae
ssdeep
24576:xNsErCXOfWWq9chQRlslcEqjDALftMO+i:jb3eWthQRoq3Ay

authentihash c92c9dcc1d5304820a031fb0bc14464abf3366a9c872d3befa0d59f8f94982c6
imphash 512f51ade421fe80abbdb0a29c5198c6
File size 777.5 kB ( 796160 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID UPX compressed Win32 Executable (41.1%)
Win32 EXE Yoda's Crypter (35.7%)
Win32 Dynamic Link Library (generic) (8.8%)
Win32 Executable (generic) (6.0%)
Win16/32 Executable Delphi generic (2.7%)
Tags
peexe upx

VirusTotal metadata
First submission 2015-07-28 15:34:49 UTC ( 1 aasta, 12 kuud ago )
Last submission 2015-07-28 15:34:49 UTC ( 1 aasta, 12 kuud ago )
File names YnHub 1.0362
YnHub.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Created processes
Opened mutexes
Runtime DLLs