kantoplayer.exe

Kanto Player

Globosoft S.R.L.

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from www.softonic.com and multiple other hosts.
Publisher:
Globosoft S.R.L.

Product:
Kanto Player

Description:
http://www.kantokaraoke.com/

Version:
8.7.0.0

MD5:
8fd9acf35f3a9e8e7e677f1cb619f71f

SHA-1:
859e47a3be76e8b4fa53925d7de363a3cce152d0

SHA-256:
cda8b52a716fdd8bf835139caa6b6296f29a0325eb991a3ae3aa5f4728bb0647

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 11:55:31 AM UTC  (today)

File size:
9.7 MB (10,160,622 bytes)

Product version:
8.7.0.0

Copyright:
Globosoft S.R.L. 2015

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Common path:
C:\users\{user}\downloads\kantoplayer.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:ZvHfJUixRPN+cB7bi9tfhACmq+blEcEC9SYtAVSIqnk7y481QG6X15V:bUsN+cB7e75jmqol9EC9h9n3481QB15V

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file kantoplayer.exe has been seen being distributed by the following 16 URLs.

http://www.softonic.com/sads/tracker.php?ev=c&co=PR&sid=19bb55a0729c7f9b21114af271dcf76a&upv=47406f15670b3368018658f17747b6f7&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBAC9B15663BFCC32A4B420C96190DC24F2C5A95DD48BEC7DE4585B81C85FFC89A0B2FABE154F7AC7E2D3991EA46CEC63EB7C4562C0F00236C14F658015787E8A91B2F4250E74825F0DDFC98E785EE7557D9062C53582ECD5CA58DEB3D41E85A86F9DF59B27EC8EED3FE572172527EC0039DC5E1733885815A0C1541E4BE5D5AD02CB74F2338EC2B38BDB2571C5053402BF42E7D4449EC761307401E793971680A1&h=A979F4A95C2840175811E29EDA00AF7E8E62BB7DD64436AE7767C7B27FBDFBDF&directdownload=1&f=69684966&d=http://download77.blotek.it/.../KantoPlayer.exe

http://gsf-cf.softonic.com/92f/714/.../KantoPlayer.exe

Scan kantoplayer.exe - Powered by Reason Core Security