nba2k16.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from am4-r1f6-stor04.uploaded.net and multiple other hosts.
MD5:
c3c0da6fcffd2b0e0ed89173262eb3f6

SHA-1:
f44df66fcb731ed6b5a9923e212253bd6f38fce1

SHA-256:
9d87a0986f9b3e568a332d5431f47181519f0184a5e7b5d563b82f87eed78f48

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:57:05 AM UTC  (today)

File size:
5.3 MB (5,508,692 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\nba2k16.exe

File PE Metadata
Compilation timestamp:
12/1/2013 7:08:28 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:B1R9Ygtbqtgdo59z5PfWG8ULVBbBtFPgQ/8o2jFfpHKxlheKmNypW/vp+qaND:nR9Fez5PfIgVBVt4ZFxqBngngqa

Entry address:
0x108AF

Entry point:
E8, 9C, 58, 00, 00, E9, 78, FE, FF, FF, 55, 8B, EC, 83, EC, 04, 89, 7D, FC, 8B, 7D, 08, 8B, 4D, 0C, C1, E9, 07, 66, 0F, EF, C0, EB, 08, 8D, A4, 24, 00, 00, 00, 00, 90, 66, 0F, 7F, 07, 66, 0F, 7F, 47, 10, 66, 0F, 7F, 47, 20, 66, 0F, 7F, 47, 30, 66, 0F, 7F, 47, 40, 66, 0F, 7F, 47, 50, 66, 0F, 7F, 47, 60, 66, 0F, 7F, 47, 70, 8D, BF, 80, 00, 00, 00, 49, 75, D0, 8B, 7D, FC, 8B, E5, 5D, C3, 55, 8B, EC, 83, EC, 10, 89, 7D, FC, 8B, 45, 08, 99, 8B, F8, 33, FA, 2B, FA, 83, E7, 0F, 33, FA, 2B, FA, 85, FF, 75, 3C, 8B...
 
[+]

Entropy:
7.9818  (probably packed)

Code size:
98 KB (100,352 bytes)

The file nba2k16.exe has been seen being distributed by the following 28 URLs.

http://am4-r1f6-stor04.uploaded.net/.../35a38280-0243-4344-9a18-73fc6c881c28

http://am4-r1f6-stor04.uploaded.net/.../44516245-f58c-4e42-ab11-ac1aa562f690

http://am4-r1f6-stor04.uploaded.net/.../4beb5954-d5a8-4d42-aea5-97a182ada4a4

http://am4-r1f6-stor04.uploaded.net/.../0391f468-e16b-43b2-9edd-9b93bb569d7d

http://am4-r1f6-stor04.uploaded.net/.../8cc00d3c-0a9d-456e-94c4-9c7202b9f55e

http://am4-r1f6-stor04.uploaded.net/.../97f9c126-65ce-4bd7-a8cf-a9ece3ef6568

http://am4-r1f6-stor04.uploaded.net/.../c1c8a8f9-b68f-4fc7-891d-d90945abbe81

http://am4-r1f6-stor04.uploaded.net/.../f42c9a2a-fd18-4c4d-95a4-8257feee8f6f

http://am4-r1f6-stor04.uploaded.net/.../4cd35ce2-4c70-463f-bf7f-91fc7ed92400

http://am4-r1f6-stor04.uploaded.net/.../80ad691e-fa1b-4843-bcfc-f9bfa7e74f11

http://am4-r1f6-stor04.uploaded.net/.../82329704-6032-4df4-91c4-02e923683b29

http://am4-r1f6-stor04.uploaded.net/.../155cdb98-402e-4865-92a1-dc86e1b436a5

http://am4-r1f6-stor04.uploaded.net/.../635f5de1-56dc-435b-af81-d7d852559f96

http://am4-r1f6-stor04.uploaded.net/.../5b3bf474-1005-4555-ade9-e4d6858d2178

http://am4-r1f6-stor04.uploaded.net/.../c47c9a57-49b5-4dec-a0e6-ddbfaccc884a

http://am4-r1f6-stor04.uploaded.net/.../fb661b80-170b-40e4-bf98-e0a6a87c69f6

http://am4-r1f6-stor04.uploaded.net/.../b0a30be9-9dc2-44dc-831c-b29da3287db8

https://www.dropbox.com/s/.../NBA2k16.exe

http://am4-r1f6-stor04.uploaded.net/.../ae90a6bd-7dcb-44eb-a89f-ca91a191ef89

Scan nba2k16.exe - Powered by Reason Core Security