zalosetup.exe

This is a self-extracting archive and installer. The file has been seen being downloaded from jp.zaloapp.com.
MD5:
94dfeb7deb7fc10a750f6584b182ffef

SHA-1:
eca99f1c6104cf84bb0c32234ccf14d5c91308bb

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/2/2024 11:34:38 AM UTC  (today)

File size:
119.2 KB (122,090 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\Documents and Settings\{user}\My documents\downloads\zalosetup.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3072:hcszVyJpPoYjwtV5kwngZN03LMG+B3z+OHn5MnBZdgg:hV6PoYjwtV5k7ULJM0nBZ+g

Entry point:
6A, 3E, A4, 73, 91, 24, C8, E1, 17, 8E, DB, 77, 72, E0, 1A, A0, CA, 64, EB, 42, 60, DB, 62, 07, 9C, 39, D4, 70, 79, 25, 1D, 25, E9, E1, BB, 21, D7, E1, FF, 46, 02, A1, BE, 75, 7D, 7D, DC, 63, C1, 20, 07, D5, 99, 25, 02, 36, 4F, 27, 91, AB, C7, EB, DE, A5, 7A, 66, B4, 1B, A0, 5E, 97, C2, AC, 33, 7D, 3B, B0, E4, BF, 13, 74, 41, B9, 0D, 64, B2, 1F, 4F, BA, 26, 94, 7F, 7E, 20, 5B, 47, 19, D6, 7F, 86, B6, BF, AE, 06, 90, AE, 3F, 9C, AA, AB, 31, 04, 65, 65, 5C, E4, 36, 8A, 5F, 14, 81, 6E, 59, 40, F4, 36, 87, A3...
 
[+]

Entropy:
7.9985  (probably packed)

The file zalosetup.exe has been seen being distributed by the following URL.

Scan zalosetup.exe - Powered by Reason Core Security