tvn_player_downloader.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from olesio.eu.
MD5:
c2b7031501f2f1a0b1d4e1170d03e3f9

SHA-1:
b420b694dd33cb70108b0fc454562eb2299e1380

SHA-256:
e3219b080f43755b3976c6567fba469a8d23ea42ca332b3a55b02c991a839e59

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
2/26/2025 6:18:47 AM UTC  (today)

Scan engine
Detection
Engine version

AegisLab AV Signature
W32.W.Fearso
2.1.4+

Qihoo 360 Security
HEUR/QVM05.1.0000.Malware.Gen
1.0.0.1120

File size:
37 KB (37,888 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
768:DL91aev5IKuWpmB6FSMj5C2Hqy5qbgWYX7ujpxExAz7jzyg+mL:DL9peBWzj5rq8SgWYrujpSxAyg+E

Entry address:
0x7CB8

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, B8, 30, 7C, 40, 00, E8, E6, B4, FF, FF, BB, E0, 98, 40, 00, BE, 9C, 98, 40, 00, 33, C0, 55, 68, A6, 7D, 40, 00, 64, FF, 30, 64, 89, 20, 68, E0, 77, 40, 00, 33, C9, BA, E8, 03, 00, 00, A1, F0, 95, 40, 00, E8, 50, B7, FF, FF, 89, 06, E9, 85, 00, 00, 00, 81, 7B, 04, 00, 01, 00, 00, 75, 39, 8B, 06, 50, E8, 6C, B6, FF, FF, 85, C0, 74, 16, 8B, 43, 0C, 50, 8B, 43, 08, 50, 8B, 43, 04, 50, 8B, 06, 50, E8, 94, B6, FF, FF, EB, 17, 8B, 43, 0C, 50, 8B, 43, 08, 50, 8B, 43, 04, 50, A1, A0...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
27.5 KB (28,160 bytes)

The file tvn_player_downloader.exe has been seen being distributed by the following URL.

Scan tvn_player_downloader.exe - Powered by Reason Core Security