wzp.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from d26yaxxlnmhaem.cloudfront.net.
MD5:
fc0fe09ca8361610e50b47349efa7576

SHA-1:
dfb42c7a82102babf3601ca4aa897b8e4a06c0bd

SHA-256:
2cf911639846cbb437d90066d7693e78928ad064f6d3f5132e285ffd6a374d1b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
1/8/2025 4:35:29 PM UTC  (today)

File size:
2.9 MB (3,066,217 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\wzp.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
49152:VO9zsiZUQNvu0vom9P1O7DWsSKJKGv3fxqs/7n0JE6gF0BaGZYEcqpakx8qGhRRQ:wUum0xP1O7asSKJKQxb70ilF0QB1EhCI

Entry point:
6D, 20, E6, F5, 7D, 46, 00, 5E, A9, 64, 81, FC, 7E, 93, 74, 00, 00, 00, 00, 00, 7F, 00, 00, 00, 00, 00, 00, 00, 89, E9, BC, EA, BB, F5, 4D, BA, 59, 07, 00, 40, 56, 18, E2, A0, CC, B5, 24, 82, 28, 8B, 6B, CB, 58, 0B, 6C, 0C, 55, 20, 82, 88, 91, 79, 04, 66, 49, 59, BB, ED, B5, 21, 1F, FC, 4B, D9, 07, 0B, 73, 4A, C9, 55, C1, 5B, 85, 5E, BE, 08, E3, 94, 80, 6D, ED, 63, A0, 18, BC, D5, 2C, 34, F6, 0E, A2, 60, 43, 54, C0, 97, 41, AF, 6A, 3F, 33, C6, C8, A1, FE, 06, 95, CE, B3, 2B, CB, B8, DD, 80, C0, F1, C0, 33...
 
[+]

Entropy:
7.9999  (probably packed)

The file wzp.exe has been seen being distributed by the following URL.

Scan wzp.exe - Powered by Reason Core Security