Submission Summary:

What's been foundSeverity Level
Registers a 32-bit in-process server DLL.


Technical Details:


File System Modifications

#Filename(s)File SizeFile Hash
1 [file and pathname of the sample #1] 2,136,688 bytes MD5: 0x158A0358EF8AC06525C611A99C7A5117
SHA-1: 0x02B372847EA3B98F0182F7214FD21051CA14CF46
2 %System%\TVUAx\libcurl.dll 286,720 bytes MD5: 0x596AE98746CEA4C2B4A54266B26B433A
SHA-1: 0xD32530A11BAC632D1BC49B41FC8EFDFBB6E1776B
3 %System%\TVUAx\libeay32.dll 1,028,096 bytes MD5: 0x2E07A92527C8AB899F5A42E1DF5DC283
SHA-1: 0x0CA898564A26AAA8EFF2ACB8473F2BD21F0D77EE
4 %System%\TVUAx\libexpatw.dll 143,360 bytes MD5: 0x41813F05F1BABC907640550D1C41B456
SHA-1: 0xDDD20043A06E36CAA7DCE8575CDEB52AC4D2CDF7
5 %System%\TVUAx\msvcp71.dll 499,712 bytes MD5: 0x561FA2ABB31DFA8FAB762145F81667C2
SHA-1: 0xC8CCB04EEDAC821A13FAE314A2435192860C72B8
6 %System%\TVUAx\msvcr71.dll 348,160 bytes MD5: 0x86F1895AE8C5E8B17D99ECE768A70732
SHA-1: 0xD5502A1D00787D68F548DDEEBBDE1ECA5E2B38CA
7 %System%\TVUAx\npTVUAx.dll 2,898,232 bytes MD5: 0x8E9A08E2092B3E1ADFF3C46BC1A5124B
SHA-1: 0x30CCEC5AC28A6D6C27FCA0B180C729C83EAF96EE
8 %System%\TVUAx\ssleay32.dll 196,608 bytes MD5: 0x2F53A197CF546A7CA5E4927B42013240
SHA-1: 0xBB054E32637D4A1DA10936774595C1B26E4F9FDD
9 %System%\TVUAx\zlib1.dll 59,904 bytes MD5: 0x80E41408F6D641DC1C0F5353A0CC8125
SHA-1: 0x6D957BA632DF5B06D49A901F2772DF4301610A2A


Memory Modifications

Process NameProcess FilenameMain Module Size
[filename of the sample #1][file and pathname of the sample #1]1,179,648 bytes
[generic host process][generic host process filename]20,480 bytes


Registry Modifications


Other details



All content ("Information") contained in this report is the copyrighted work of Threat Expert Ltd and its associated companies ("ThreatExpert") and may not be copied without the express permission of ThreatExpert.

The Information is provided on an "as is" basis. ThreatExpert disclaims all warranties, whether express or implied, to the maximum extent permitted by law, including the implied warranties that the Information is merchantable, of satisfactory quality, accurate, fit for a particular purpose or need, or non-infringing, unless such implied warranties are legally incapable of exclusion. Further, ThreatExpert does not warrant or make any representations regarding the use or the results of the use of the Information in terms of their correctness, accuracy, reliability, or otherwise.

Copyright © 2014 ThreatExpert. All rights reserved.