zalo_105.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from f20.softwaretop.net.
MD5:
4748a03a9705fdaf06d4313ce8e2b526

SHA-1:
670c8d2a5b958e49b1018fe9290c0375a2ace8bb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/23/2024 10:24:28 AM UTC  (today)

File size:
13.8 MB (14,441,240 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
2/25/2012 2:19:54 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
196608:wBYx7tytKsKiUJ5XdvtmzMi7N312GgWSJeYWNzdzry6j816zG+ZydC66hJX//DNg:h5sKiUvtV2V7tqWFNFng+wC5DvGcNU

Entry address:
0x3883

Entry point:
60, 0F, BA, EF, 3D, B2, 3D, 39, F8, F2, 69, FA, 7F, FC, F9, EE, 0F, BF, FE, 80, C7, 4F, 8D, 15, FB, AE, 22, 57, BB, 24, 46, 94, EB, F6, C0, D2, 84, FA, 33, EB, 81, F9, 21, 66, 00, 00, 76, 09, 8A, C8, 0F, A4, C8, 51, 0F, A5, FF, 8B, F7, 01, D6, 10, CF, 52, 0D, 52, F5, EE, AC, B1, 4F, FE, C7, E8, 1A, 00, 00, 00, EB, 02, 12, D9, C1, C3, AE, 80, C6, 02, 0F, B7, FD, EB, 05, 0F, B6, D0, 2A, D3, 03, E8, 86, EB, FE, CE, 0F, BA, FB, B0, 0F, A4, CE, 75, 0F, CF, 0F, B3, C0, C7, C7, 04, 6E, 83, 41, 0F, BB, F7, FE, C5...
 
[+]

Entropy:
7.9976  (probably packed)

Code size:
27.5 KB (28,160 bytes)

The file zalo_105.exe has been seen being distributed by the following URL.

Scan zalo_105.exe - Powered by Reason Core Security