kantoplayer.exe

Kanto Player

Globosoft S.R.L.

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from en.softonic.com and multiple other hosts.
Publisher:
Globosoft S.R.L.

Product:
Kanto Player

Description:
http://www.kantokaraoke.com/

Version:
8.5.0.0

MD5:
e3f57b6afcd81efcb05f0d4300783e12

SHA-1:
9911757acdd70a26833640658f31732f4710e701

SHA-256:
94962b439c42c6b48a214b5a5cfa6a4b56eef313c6637e3339021fa8e283729f

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/24/2024 11:27:41 AM UTC  (today)

Scan engine
Detection
Engine version

Zillya! Antivirus
Tool.WinCred.Win32.119
2.0.0.2571

File size:
9.9 MB (10,342,223 bytes)

Product version:
8.5.0.0

Copyright:
Globosoft S.R.L. 2015

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\kantoplayer.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
196608:Ihdpgcl8KYtShAhdjN9vWsIy9dbXUxf6PCuv84VKl7DTAu64JcrB58m:ITHYtSmhMsH9dbXUx1uNwl7IFt9f

Entry address:
0xA5F8

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, CE, 8A, FF, FF, E8, D5, 9C, FF, FF, E8, 64, 9F, FF, FF, E8, 07, A0, FF, FF, E8, A6, BF, FF, FF, E8, 11, E9, FF, FF, E8, 78, EA, FF, FF, 33, C0, 55, 68, C9, AC, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, 92, AC, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 26, F5, FF, FF, E8, 11, F1, FF, FF, 80, 3D, 34, B2, 40, 00, 00, 74, 0C, E8, 23, F6, FF, FF, 33, C0, E8, C4, 97, FF, FF, 8D, 55, F0, 33, C0, E8, B6, C5, FF, FF, 8B, 55...
 
[+]

Entropy:
7.9974

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
39.5 KB (40,448 bytes)

The file kantoplayer.exe has been seen being distributed by the following 17 URLs.

http://en.softonic.com/sads/tracker.php?ev=c&co=PH&sid=b786c93b4f27210f5657199befb3e5d0&upv=a99ecb9e3cb1608edbc9e253abe2253f&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB6A02C1AE3C4FA054CFD721059DC0A64E228AE0FF2AFD7DD668C8353C0A2E393A84DD117F92C3FD4CC6C0B334439A891761FAE5BAC74545E4C3FC7327B6C138A9BAF89694CF1A76854C171DA822B6BE51D580A8CC88D957521FC416A7BCB2E3B2ABE15D9F6217136489439BCE0B33CC32D9DE0873FD9D6E03B173F0A460AA3BC0385C6FD91EC05191EF6A089CD2E8A36FA&h=0A2305DBAF21B764A8C2F4356FCA884BAF388585DECC38DE783999E5C9F62702&directdownload=1&f=69684966&d=http://www.download77.net/.../KantoPlayer.exe

http://www.softonic.com.br/sads/tracker.php?ev=c&co=BR&sid=a987e046a8cf60840c5822d5c143bb29&upv=8a371ea637669f5d1f67916412488b0c&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBAB9D0A325A0C66CC51714148938FC8A6436A83A7EB414729E5C1F9F319E08F2B5347CC2F4ABA617BE5CDD46B6DF617DD0AB5E05753600BC2429442D42D6BA00F439A215E462858CE6E322409F364449DCB438A45EFFB8662D990F9DB40258142D87D12E42F7EE1E167311ADB50636ED29FF37DF570D0A40028EF5FEF23C6CDC1F792DAB21F8ACD35CCDEDAD4BCEB579088E467565E7EF584C0162EBA6FE2E2A6C&h=A724070DA11FCF4FECBD07BFB1072AD412FE2C5988B23A4C65F2DC1543E1AD03&directdownload=1&f=69684966&d=http://www.download77.net/.../KantoPlayer.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=EC&sid=5c814f9ab5c355d6f17578744c3793ac&upv=622dd90d3ee9948e523875245dfef4c4&z=results&sk=0&abp=0&params=F24F8F4D368AFA5D32C8A90D9EFD1CBAC9B15663BFCC32A4B420C96190DC24F2C5A95DD48BEC7DE4585B81C85FFC89A0EC240225339F7EC4049B74FD2F3060EB7871674AEA6C4C9B014BE46498693847E7EBE400158B7EF17E7A1CD7E70107AB6C020D5D3E200F8AB8B7C06CFEFC42B196289AAECFE9F1A0D70259DAF7D60F1913B903F1E13C4E646B7E29B2E9E9F2639F87FB076A690319D743B3BC50310AF6259E4A4CCBB41EB5627BED3DF580EA47&h=945649A4CDE98151CBEF38289721B8C0A2DF75BC24318248004489AABD9E8900&directdownload=1&f=69684966&d=http://www.download77.net/.../KantoPlayer.exe

http://www.softonic.com/sads/tracker.php?ev=c&co=AR&sid=e4962bc206b52db6f232b5d274bd128f&upv=150855b415c63af0359fe7abcfe0e479&z=list&sk=589&abp=1&params=F24F8F4D368AFA5D32C8A90D9EFD1CBAC9B15663BFCC32A4B420C96190DC24F2855F489A7E48DA082B195828CE7EA758E1FA5277237AC6146B10502EEDBBF66C1E7C98DF30D9416F0CFD729DD1A0928FC5E6F7CE5B369BFA12DAD629BACDE668743E990E48F85678DD9E1F8B541EBDDC05E2625C4C05A6A60D4682587066856218D3E867F665BFC41AAE9ABE6BEAF28DBA44E344E51455C735463BC6F0C35613&h=C96126B12C8BF3D4F8A48C3C82E0347B9085205017A70CA5641196D06070F10F&directdownload=1&f=69684966&d=http://www.download77.net/.../KantoPlayer.exe

http://en.softonic.com/sads/tracker.php?ev=c&co=HK&sid=5b3e45e5b3a3e920cec43fea8e8091b6&upv=d17b7469af45104fe711bb8bd7cf72ef&z=results&sk=0&abp=0&params=F39B2A32BFC101987B1458170C278E031176ABDE618A400FC6FF30446D94EAB6A02C1AE3C4FA054CFD721059DC0A64E2D07171FBAC6801627EA84C0EB639ABED43053DE2F51CB7F9703191827825DCA2E804C5940C8BB7F7E042EA4BCEEB87ED3D99E32701FF893013FB658D89D2F95FE5CB3CC7F47AC7AC8E10A80E1FF4B35EFCF1411F80B8429738B3615DC389F0B5FD50FEC47F34EB1ED18FA13C0278551172456BB2963F4C5F830E69C7CBD55AC4&h=12AA81AE77C06B436125457715CCBF3251CDE17EFB4049123620BDFFD80F6E80&directdownload=1&f=69684966&d=http://www.download77.net/.../KantoPlayer.exe

Scan kantoplayer.exe - Powered by Reason Core Security