k2pdfopt.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.willus.com.
MD5:
4d2279c304bd624f208c3ca72bf41d49

SHA-1:
23e4fe033e5361c8e23e74ace737655ca2f7f7f9

SHA-256:
6818b389fa1c98c714a19f6f7b82abd676fa696d1af9ad97fef8facdb215e4df

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 5:35:22 PM UTC  (today)

File size:
10.8 MB (11,300,589 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\k2pdfopt.exe

File PE Metadata
OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
2.24

CTPH (ssdeep):
196608:512T4YNmWgsJHIQvlWVjQFJ2Hg9ok1DZF8m4+jZi:D2EGmapijQFJ2A6k1DZF8r+E

Entry address:
0x180ED70

Entry point:
53, 56, 57, 55, 48, 8D, 35, AA, C2, 7D, FF, 48, 8D, BE, DB, 5F, 01, FF, 48, 8D, 87, 4C, FE, 7E, 01, FF, 30, C7, 00, 0E, 16, 08, 30, 50, 57, 31, DB, 31, C9, 48, 83, CD, FF, E8, 50, 00, 00, 00, 01, DB, 74, 02, F3, C3, 8B, 1E, 48, 83, EE, FC, 11, DB, 8A, 16, F3, C3, 48, 8D, 04, 2F, 83, F9, 05, 8A, 10, 76, 21, 48, 83, FD, FC, 77, 1B, 83, E9, 04, 8B, 10, 48, 83, C0, 04, 83, E9, 04, 89, 17, 48, 8D, 7F, 04, 73, EF, 83, C1, 04, 8A, 10, 74, 10, 48, FF, C0, 88, 17, 83, E9, 01, 8A, 10, 48, 8D, 7F, 01, 75, F0, F3, C3...
 
[+]

Entropy:
7.6078

Code size:
8.1 MB (8,540,160 bytes)

The file k2pdfopt.exe has been seen being distributed by the following URL.

Scan k2pdfopt.exe - Powered by Reason Core Security