ysp_inst.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from c-yspsetup20113exe.a-ymessenger.http.atlas.cdn.yimg.com.
MD5:
dd7d1ce9e00a8730401dba89a695cebd

SHA-1:
2181f87f158a00578caf53773014da2d40908c75

SHA-256:
6a416cd68577337ae1594e376c409bb1c5539f31ddd9a4a1571b68b4b08e9598

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 5:04:57 PM UTC  (today)

File size:
834.7 KB (854,745 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\ysp_inst.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
24576:H0vAghbA9aptXKWEt3b2Atido8UrgAJ/H5/3:U4gbAUBEtL2GiSvr3J/Z/3

Entry point:
01, 5D, 00, 00, 20, 00, 98, 2A, 0D, 00, 00, 00, 00, 00, 00, 26, 96, 8E, 70, 00, 17, F7, EC, 05, BB, EA, F4, FF, 94, 01, 2F, 44, EF, 7C, E6, F5, D8, E8, 08, 04, CB, D1, E8, 7B, D6, D9, 98, F0, 63, 6C, DD, 0B, 4B, 4E, B9, FC, A4, 17, 0C, F0, 54, 53, 3B, B0, AE, 1C, 70, 86, 0F, 1B, AE, A2, 22, 07, 9B, B7, 67, 57, 9A, 97, 04, 02, E8, 9B, A9, 7E, 08, FC, A7, 7E, 8A, 9A, 93, D3, 6F, 46, 7E, 3B, 8D, 62, 25, E0, F0, CB, DF, 28, 46, F2, D2, 8C, 5E, F9, BB, E4, D8, 4D, 96, CE, E2, 9A, 37, 67, EE, DE, EE, A1, F3, BB...
 
[+]

Entropy:
7.9998  (probably packed)

The file ysp_inst.exe has been seen being distributed by the following URL.

Scan ysp_inst.exe - Powered by Reason Core Security