mail.exe

网易邮箱大师安装程序

NetEase (Hangzhou) Network Co., Ltd

This is a setup program which is used to install the application. The file has been seen being downloaded from u.163.com.
Publisher:
NetEase (Hangzhou) Network Co., Ltd

Product:
网易邮箱大师安装程序

Version:
2.2.2.5

MD5:
2d6f3eca45c9dad44970d8c7a658dd19

SHA-1:
3e9465456f9a0fedd698f24f58ea1002afa03973

SHA-256:
55c4675e2ab5bab2de984c80b2f779f061d19fbc87c1db50aab1466e18a9e82f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 7:59:27 AM UTC  (today)

File size:
68.2 KB (69,825 bytes)

Product version:
2.2.2.5

Copyright:
Copyright 2016, NetEase (Hangzhou) Network Co., Ltd. All rights reserved.

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\mail.exe

File PE Metadata
Compilation timestamp:
7/21/2016 5:58:55 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
14.0

CTPH (ssdeep):
1536:vOmsXW5M8JuNwB52FXTiVASnmnmoLd6hAV/msFReb5APcnbb:vhbPnhXOLpV/msF25A4

Entry address:
0x21A5

Entry point:
6A, 00, FF, 15, A4, 50, 40, 00, 50, E8, D9, 0A, 00, 00, 59, 50, FF, 15, 90, 50, 40, 00, CC, 55, 8B, EC, 81, EC, 14, 02, 00, 00, 53, 56, 8B, 75, 14, 85, F6, 0F, 84, BE, 00, 00, 00, FF, 75, 08, 8D, 4D, F8, FF, 75, 0C, FF, 75, 10, E8, 59, 0E, 00, 00, 8D, 4D, F8, E8, 76, 0E, 00, 00, 84, C0, 0F, 84, 9D, 00, 00, 00, 8D, 4D, F8, E8, 6D, 0E, 00, 00, 83, F8, 01, 0F, 82, 8C, 00, 00, 00, 8D, 4D, F8, E8, 5C, 0E, 00, 00, 3B, 05, BC, 14, 40, 00, 77, 7C, FF, 36, 33, C0, BB, 04, 01, 00, 00, 66, 89, 45, F4, 66, 89, 85, EC...
 
[+]

Entropy:
7.7877

Packer / compiler:
FASM v1.3x

Code size:
8.5 KB (8,704 bytes)

The file mail.exe has been seen being distributed by the following URL.

Scan mail.exe - Powered by Reason Core Security