k2pdfopt.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.willus.com.
MD5:
9e937b0b7bf03d661ebf63b4c69c099b

SHA-1:
d2c0787659e097d662d457f72fea61945ce0828a

SHA-256:
7ff85a1b5abc368b6faffb26b91e128e4591ade37e88656df3b57e1f58d076da

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
5/1/2024 8:27:06 PM UTC  (today)

File size:
10.5 MB (11,060,705 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\downloads\k2pdfopt.exe

File PE Metadata
OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows Console

Linker version:
2.24

CTPH (ssdeep):
196608:7l6mha8sI+4wYZnajrSEH4d5hboMkwtM2aad:xHKI+nCnGv4fhboVwttaad

Entry address:
0x176EF70

Entry point:
53, 56, 57, 55, 48, 8D, 35, AA, B0, 80, FF, 48, 8D, BE, DB, 6F, 08, FF, 48, 8D, 87, 4C, 06, 75, 01, FF, 30, C7, 00, 4C, 40, 0E, 86, 50, 57, 31, DB, 31, C9, 48, 83, CD, FF, E8, 50, 00, 00, 00, 01, DB, 74, 02, F3, C3, 8B, 1E, 48, 83, EE, FC, 11, DB, 8A, 16, F3, C3, 48, 8D, 04, 2F, 83, F9, 05, 8A, 10, 76, 21, 48, 83, FD, FC, 77, 1B, 83, E9, 04, 8B, 10, 48, 83, C0, 04, 83, E9, 04, 89, 17, 48, 8D, 7F, 04, 73, EF, 83, C1, 04, 8A, 10, 74, 10, 48, FF, C0, 88, 17, 83, E9, 01, 8A, 10, 48, 8D, 7F, 01, 75, F0, F3, C3...
 
[+]

Code size:
8 MB (8,347,648 bytes)

The file k2pdfopt.exe has been seen being distributed by the following URL.

Scan k2pdfopt.exe - Powered by Reason Core Security