kknd2-demo.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from nahoo.net.
MD5:
e48fffd3b10ce11216c3881a21b5feec

SHA-1:
770774e87c6a6a11cde0db6896c00f1ff7637675

SHA-256:
048e3a60b95b24e9affee4ed7ceaa47f3c0ef4b84f2672f0687618b44a9d7b72

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 1:56:15 PM UTC  (today)

File size:
14.4 MB (15,150,194 bytes)

File type:
Executable application (Win16 EXE)

Common path:
C:\users\{user}\downloads\kknd2-demo.exe

File PE Metadata
OS version:
124.4353

OS bitness:
Win16

Subsystem:
Windows GUI

Linker version:
3.0

CTPH (ssdeep):
393216:uzmXWPCETQVQ70fpnVQMzfbFM15DBM+AfxYl:u6XqLTD7un22DFM15DBbou

Entry address:
0x10C0106

Entry point:
4D, 5A, 90, 00, 02, 00, 00, 00, 22, 00, 11, 00, FF, FF, 07, 00, 00, 01, 65, 40, 00, 00, 00, 00, 40, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, 02, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9992  (probably packed)

Code size:
192 KB (196,611 bytes)

The file kknd2-demo.exe has been seen being distributed by the following URL.

Scan kknd2-demo.exe - Powered by Reason Core Security