wzp.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from 113.171.224.216 and multiple other hosts.
MD5:
5fe0bb779e215b994a8fb264ba67272f

SHA-1:
ad28708845317fc3f6f67474cbb4a33405e8a5bd

SHA-256:
7f9c439dd375b08465af14c49e952e6a0dd5abddbdc1257877b2ab82eacc908a

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/8/2025 5:06:09 PM UTC  (today)

File size:
2.9 MB (3,036,287 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\wzp.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
49152:A9U2vj/muyWWD+zDk8ueFKBLnr1wwetuqJk/5Cnr6UT4zhgccIaejwC1vK9DmE/f:YUQUWDDk8QBLr1/ecl/ErG9gc7MIKQEH

Entry point:
6D, 20, E6, F5, 7D, 46, 00, 5E, 3D, 3F, 3C, 16, 60, 0E, 74, 00, 00, 00, 00, 00, 7F, 00, 00, 00, 00, 00, 00, 00, 08, B9, 86, D1, BB, F5, 4F, BA, 59, 07, 00, 40, 56, 18, E2, A0, CC, B5, 24, 82, 28, E7, 1A, 98, 42, 5D, EE, 52, E7, BB, 59, DA, AB, EE, 8A, C6, FA, 79, 41, 37, A5, B6, A8, 4D, 1A, 19, 05, FC, 53, 14, 38, 68, 38, EC, 22, DE, CE, 4A, 9D, 2F, B7, DE, FA, D1, 10, CC, 8F, CB, CD, BE, AD, 12, A9, A9, 9F, 78, 1C, 45, 55, FB, A1, 18, CD, 81, 08, FB, E9, 18, FC, BE, 61, 1C, 3E, 27, 8A, 8C, D8, C2, 1F, 72...
 
[+]

The file wzp.exe has been seen being distributed by the following 4 URLs.

http://113.171.224.216/.../wzp.exe

http://43.255.113.227/d26yaxxlnmhaem.cloudfront.net/Public/softs/wzp/2.2.51/.../wzp.exe

Scan wzp.exe - Powered by Reason Core Security