kishkish-lie-detector_5606.exe

KishKish.com

This is a setup program which is used to install the application. The file has been seen being downloaded from files.downloadnow.com and multiple other hosts.
Publisher:
KishKish.com

Description:
SAM - Answering Machine for Skype™ users

Version:
4.0.0.7

MD5:
c2367925c7af79992a40ee9084ae82db

SHA-1:
3b3e0d21a58ab11768e93da01be1f98154c3f2c2

SHA-256:
edb9634cef38fb97b8fc630ab27f98907dd6c463967c19d45891ab3719fad7a5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 4:45:01 PM UTC  (today)

File size:
2.7 MB (2,846,911 bytes)

Copyright:
Copyright © KishKish 2004-2007. All rights reserved.

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\kishkish-lie-detector_5606.exe

File PE Metadata
Compilation timestamp:
8/27/2005 4:19:47 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:q547gXyj3Fs3Fp5sf6+Tz3PsxxVil0qfhYdKxaUL3rgFn3BU3rSny:UlXUVgpkHTYsl9YyLra3BmrSny

Entry address:
0x31A3

Entry point:
83, EC, 20, 53, 55, 56, 33, F6, 57, 89, 74, 24, 18, BD, 38, 92, 40, 00, 89, 74, 24, 14, C6, 44, 24, 10, 20, FF, 15, 30, 70, 40, 00, 56, FF, 15, 80, 72, 40, 00, 68, 28, 92, 40, 00, 68, 20, E8, 42, 00, A3, D0, F0, 42, 00, E8, C0, 27, 00, 00, BB, 00, 64, 43, 00, BF, 00, 04, 00, 00, 53, 57, FF, 15, 58, 71, 40, 00, E8, 79, FF, FF, FF, 85, C0, 75, 24, 68, FB, 03, 00, 00, 53, FF, 15, AC, 70, 40, 00, 68, 20, 92, 40, 00, 53, E8, 9A, 27, 00, 00, E8, 59, FF, FF, FF, 85, C0, 0F, 84, 46, 01, 00, 00, BE, 00, 50, 43, 00...
 
[+]

Entropy:
7.9941  (probably packed)

Code size:
23 KB (23,552 bytes)

The file kishkish-lie-detector_5606.exe has been seen being distributed by the following 7 URLs.

http://files.downloadnow.com/s/software/13/04/42/.../KishKish.exe

https://dw.uptodown.com/dwn/TRJka7_8p9Lrs5RjJMsYbHLEUsbEKQaU7oY3PIeWF0LeFxaoly6k0dLBMcSgwEygzXOUUXXtnb4vY_7SGzfZ11BI3ri81oGVDB0-Q8CdpJ4haRYrCz5HLzT-ND3Zko3F/y3mBaqRXabU06byAr3M7PXNDGHUxgSdYp9WWyCxU-QHeJ68M_Fx0znk6MSftDt-BnxEAlOcGWUCCHT-FpNpzBH3tpU4xtBVNoKMMj3anikvtSsPyiaVAzJ1tOIBjiKpO/hxHXI01Cm3zbDpbcKvKvRoLwxlGLfEcJUCiwvIKzhtzx3_N35LWoO6_MFF6k3S61yjyhduPxBzRUsEGz-98ttvHorhi1PmAMA88HeImM9bEs3btvk49CvdiDDZlbebqm/.../

https://dw.uptodown.com/dwn/dnh8b2iTBQuLfGlx_UC1RvK6QyLe-hSzTjyUiVwLtGWXKrQ5Z96Wfx_PmWsJQ3FboPSeHqAy8Sj9Sp7usjM9QJse4ZV0fsaag6BIM0ch9JyBv02OL1_4-cm3rf_2kNpt/gzOezxJNv9aswyKz7tOLVkPyEl9Dm9E5zbYgmTfqr-O8B9bphf8sqhBjbmbm8gOW3QIguGmjfS2ycnM9oIO4OB9sogXKy-IQWdwBLMEs2aHNeE4Yhsmix7FnEEpk46QL/wEvXhDlzJqKmWcwkMBkh4RQYQjayRwJYFB0HKjAHHUkqakRMxkFgu1GP6IgN0uvNmZ9g0Vx3pBSd14bBqcS9pFKm0r3Fi1ZY2oB511iBGygW-U441EuoQvDAOsBgRegM/.../

http://dw.uptodown.com/dwn/IDtbD9iLGB5GKyq_SDYKI1kiq2L4f8DDnPHbUJCNJSRx1g5Ud_Jw9C1HzVJK-w1apqMLdbNdoMdFh7QlQO7kH62sKQ1RZJBkVvTLXSHC71wv8mqrorvvyR-w8t7ze4XC/SaZoPG55dmz7_TacQ5dXkNyGVtPlAoKNUvhwl7rYwoaEh5M-6j1qSeswon332pP625iB7nwEI-NJtVVZTRREJxPtyeb1XZBfzX-HDaMH61D6ynEG_XuyPYI2qezR7UpL/vcI5jeJ1iGNyDBEZ6gIKY9NedjDb_8yEsSZYn3_YlaN1mUBzs1ehphqYHpoq4nxaI2_nRiXTVI_WGm8bqQHqVu-pCGAG1tZWk65kp-4OEKeotEj4Mw4DQ6l415YFVVeE/.../

Scan kishkish-lie-detector_5606.exe - Powered by Reason Core Security