b2.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from b2-31d2.kxcdn.com.
MD5:
1e3ac27434205620cb6453a6ba301719

SHA-1:
50788d001d712607c21e2af96a19ce309eb03b85

SHA-256:
1ca2a83509dd3f0da12e192b549c89ceef99b02403cc12edb1b3227385639180

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 12:15:26 PM UTC  (today)

File size:
3.8 MB (3,997,090 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\b2.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
98304:5DY/KtPsxBcngEe4O0StS2JS5TVT3UG9j+dk0my57RLB7wUfKD+I/o0oi:5DY/KtUxBd4Df5AG9j+157NzKNXoi

Entry point:
FF, BC, E5, 2C, D6, 19, 3E, FC, D9, 61, 26, 23, 52, FE, 45, 50, FC, 6D, C3, D9, 4E, 92, 77, 35, 98, A8, 41, 26, 36, 96, C3, 56, BD, 3A, F2, 6B, 35, B3, 39, 74, 36, C3, DA, 92, 5F, F3, 35, 82, 9D, 53, D4, 41, C0, 3D, A5, BD, A7, 3C, 85, 5D, D8, AE, 6A, FC, 2C, 7D, A7, A7, 08, DD, 54, E0, 42, 30, 71, B9, C3, 22, E4, 7A, 8C, B8, 6F, 5B, 23, 69, B3, C5, 58, 3C, 73, D6, A8, 50, 53, A7, BC, F5, D5, 8F, 43, CB, 1D, 3F, B8, C2, A0, 5C, 79, 4E, C1, EF, D5, 52, 5D, 96, F3, 9B, D2, 36, B8, B0, 9B, 34, 22, 9E, 7C, 40...
 
[+]

The file b2.exe has been seen being distributed by the following URL.

Scan b2.exe - Powered by Reason Core Security