mailpv_setup.exe

This is a setup and installation application. The file has been seen being downloaded from www.nirsoft.net.
MD5:
49704761ae94e598dd8f557dffaf0a5c

SHA-1:
c764943fb7b0c9de07f9817dd55b4d5a42e245f0

SHA-256:
1ff204e59f47fbc91ea04963290718fd19ac1d4430f70486e5b3b1d8eb1a3856

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/24/2025 8:37:48 PM UTC  (today)

File size:
134 KB (137,189 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\mailpv_setup.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3072:le+ho1e+9kVXoBolDgp284BTlrRgCYl4a1UGU:k+q1JkVTlDgp284BmldUGU

Entry point:
A9, AC, BD, A7, 6C, FF, FF, FF, F8, FF, FE, CB, FF, BC, FF, C5, FF, A3, FF, AA, FF, 8C, FF, 9A, FF, 8D, FF, 8C, FF, A3, FF, BA, FF, 93, FF, 90, FF, 96, FF, 8C, FF, 9E, FF, A3, FF, BB, FF, 90, FF, 88, FF, 91, FF, 93, FF, 90, FF, 9E, FF, 9B, FF, 8C, FF, FF, FF, FD, DD, FF, 92, FF, 9E, FF, 96, FF, 93, FF, 8F, FF, 89, FF, A0, FF, 8C, FF, 9A, FF, 8B, FF, 8A, FF, 8F, FF, D1, FF, 9A, FF, 87, FF, 9A, FF, FF, FF, FC, E7, FF, A8, 96, 91, B1, AB, DF, B4, 9A, 8D, 91, 9A, 93, B2, 90, 9B, 9A, DF, BB, 8D, 96, 89, 9A, 8D...
 
[+]

The file mailpv_setup.exe has been seen being distributed by the following URL.

Scan mailpv_setup.exe - Powered by Reason Core Security