emailpro_2.exe

Email Address Pro

A1 Soft

Publisher:
A1 Soft

Product:
Email Address Pro

Description:
emailpro

Version:
3, 0, 5, 0

MD5:
a7bcfb50ef8bf9ceaf622608f20fdf8b

SHA-1:
bfff88b6b496ebb44e05dbaf908e5b44b7ce0dd3

SHA-256:
6d15af1ee225f7039b379fc16154b4403fdd5536e649ff4708eeb25bc2e275aa

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/15/2024 1:30:25 PM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
HW32.Laneul
1.3.0.4959

File size:
305 KB (312,320 bytes)

Product version:
3, 0, 5, 0

Copyright:
Copyright © 2001

Original file name:
emailpro.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
9/14/2001 1:48:25 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.0

CTPH (ssdeep):
6144:bOfF6Rtwvl1D8CTohZbDWvUCLdk35bNmRlRDpoBdJqc18MM9qRJKmR:scYUCRW5xmnIAmR

Entry address:
0xBE90

Entry point:
55, 8B, EC, 6A, FF, 68, 30, 8B, 43, 00, 68, 28, 10, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, C4, A8, 53, 56, 57, 89, 65, E8, FF, 15, 10, A8, 44, 00, 33, D2, 8A, D4, 89, 15, EC, 7E, 44, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, E8, 7E, 44, 00, C1, E1, 08, 03, CA, 89, 0D, E4, 7E, 44, 00, C1, E8, 10, A3, E0, 7E, 44, 00, E8, F4, 50, 00, 00, 85, C0, 75, 0A, 6A, 1C, E8, 49, 01, 00, 00, 83, C4, 04, E8, 21, 35, 00, 00, 85, C0, 75, 0A, 6A, 10, E8, 36, 01, 00, 00, 83, C4, 04, C7, 45, FC...
 
[+]

Entropy:
6.0540

Developed / compiled with:
Microsoft Visual C++

Code size:
197 KB (201,728 bytes)

The file emailpro_2.exe has been seen being distributed by the following 18 URLs.

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-lTWwVxol5bg6yshH-MIFTgsBh4j7M1Z76hzbkx82H-sBAmNX0qBuSuqQwC0TVWeE/messages/@.id==APXkimIAACJVVbtVnQzkyJQXhTg/content/parts/.../raw?appid=YahooMailBasic&ymreqid=8cc917ea-135f-663d-13b5-9b0000010000&token=zitEzqOML3j84e6ealFTT5U7-km5qEQF52lp7AcCuBaNbD7a0zGuoK1KYjjhpAlEGKef2uvEVBWP4qoTTwNEdCC3_U0XeG2uCLvUPP-4-TYaXYsR4RvwvgV3QYEmzl84

https://mail.yandex.com/.../Copy of emailpro.exe

http://www69.zippyshare.com/d/JnZs5G24/.../vemailpro.exe

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-aUWeuAOf_1VBXTfMJJxJhhRX53CeMrrwXocdF3BkFDaZc0kFlzvBMOcD3vlnuFF6yqtsdt-jko-uK0ko8KHOrw/messages/@.id==AHQaDUwAABhLVU0f6gteKFLMW0c/content/parts/.../raw?appid=YahooMailBasic&ymreqid=0142351a-c6f9-40e5-13b0-3f0000010000&token=zitEzqOML3j84e6ealFTT5U7-km5qEQF52lp7AcCuBYDY0douwqXHa48jPV7bBpjZaLWo59McxU303u2Txe8BJoPMiI_gJzlW_bRHFiNu0voXrvqWXAmKM0cYz1HHvee

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-CvOmHkinPV4-o5j9XweULGj0s7-Us9COhcVaWBIR8uObZeBWsYDwGhH799-60TUIyqtsdt-jko-uK0ko8KHOrw/messages/@.id==ADJ4xAoAAe3AVyE6HgpE6BTFekY/content/parts/@.id==2/raw?appid=YahooMailNeo&token=zitEzqOML3j84e6ealFTT5U7-km5qEQF52lp7AcCuBb43jxaOwNoZvhGewCylvF7aHAWqAMA2Ax_UtGYhMXsMDGu4ZSPR87qZhX_Gm89TBboXrvqWXAmKM0cYz1HHvee&error=https://mg.mail.yahoo.com/.../iframemsg?id=7c810637-d7e3-d73f-f276-adeb3fae209d&ymreqid=d41d5a8f-c001-1f79-016c-fc000d010000

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-NfkSLcHodoDPKi3uw2LaeRVmg1WfJAt0rg4j0ydxy84TE_Yb7lXmsQr2pS0LVMcd-OZtZrw2rULBXQ-scIJXZQ/messages/@.id==AJtCwwoAADX3Vy278g4B8Psybl8/content/parts/@.id==2/raw?appid=YahooMailNeo&token=zitEzqOML3j84e6ealFTT5U7-km5qEQF52lp7AcCuBYP2jMvWLjYkCvYFJASjIxQF4qj8oOodEOwESz1ULyywtwHrR1DKUin3HrxXfPDgtk6y0cZDZK87O4GU8LnZAz6&error=https://mg.mail.yahoo.com/.../iframemsg?id=b968b6dc-370f-ab88-25c3-6afb2ce9d755&ymreqid=cb9e2998-410e-9a4f-012f-c30016010000

https://onedrive.live.com/download.aspx?cid=824C5CAA9F206855&authKey=!ANDvL0iFcLGy3Jg&resid=824C5CAA9F206855!106&ithint=.exe

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-1m5-7tOo9or66GRVgvChvPsLT6CHLRqF04ugrUkX_DZVUUCy1HwjKYS5uX5x3VTwGH4nkLovJSeSm65J69qU1w/messages/@.id==AOHkimIAABdAVi5NkwcMsJZPb1M/content/parts/@.id==2/raw?appid=YahooMailNeo&ymreqid=8945fd59-0bc5-eab4-0138-c60015010000&token=WqAdB_R8gWcDklKKcSj3OjQrJwLLIdZUSu_eRplx_w0Bq5_qP1tTkMXucMLoWOmQ_tmbZU_QP6bd5QzJLzvu9w&error=https://us-mg5.mail.yahoo.com/.../iframemsg?id=09ed75e4-30dc-eb27-7bb6-f1bfe4f9ad10

https://mg.mail.yahoo.com/.../download?m=YaDownload&mid=2_0_0_1_1956461_AIB8v9EAANGcTiMdnQtBbxnqIQA&fid=Inbox&pid=7&clean=0&appid=YahooMailNeo&ymreqid=50bf943b-bded-f9a9-01c0-6b02d9010000

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-VjcaIYe4JYbHJoUfgd_Lch1GQr4eJ9VDmt6xuPX2FKkmnZAQNM0nTjzGA6t3HXyA/messages/@.id==ADfuw0MAAA49U0ajBAAAAJTqKcw/content/parts/@.id==2/raw?appid=YahooMailNeo&token=zitEzqOML3j84e6ealFTT5U7-km5qEQF52lp7AcCuBb2AQYLcU6qZOTk_zETNFBM6F676llwJijNHGM9Rx73ng&error=https://us-mg6.mail.yahoo.com/.../iframemsg?id=19da8def-7aa0-ce95-51ba-69453bd00d85&ymreqid=e9426a96-1509-e64f-017d-100010010000

https://dl-mail.ymail.com/ws/download/mailboxes/@.id==VjJ-HwPouIOyPOpVUyEeOtDXOU5PcOZFKqeO5fwLxVsQo3B3aEF1pwE1pG98J5A_zq3Oyqtsdt-jko-uK0ko8KHOrw/messages/@.id==AI4o5C4AAAdEUcv6tQAAAPL7-Yw/content/parts/.../raw?appid=YahooMailBasic&ymreqid=f7fbd53b-cf80-b324-137e-420000010000&token=rUnvJ6R3vAHdSb_1t-qurwYc1oTZomSHdef_QeQf3qoLp9jSnT9PmhfD40jeu4PpkTYfwXZzYjbIH-_Ndbsclw

Scan emailpro_2.exe - Powered by Reason Core Security