zhpdiag3.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from www.nicolascoolman.com.
MD5:
46002f19a0fe10f3c7cc340fbe1e183c

SHA-1:
2f46138b6bdc8057c0af6357a03eb9423be09437

SHA-256:
4763fde0c77fe9e75be564322ef63b948dd6ecbab61d075511a99277b4cbf272

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:24:32 PM UTC  (today)

File size:
291 KB (297,973 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\zhpdiag3.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3072:Oh5QhElOrv3LH5Jqqf/ANgtH1+W3yVDA11OEdlN3MThndOhXzdNpq0huTZYM:r3LPqqf/ANgt1+W3gkXOEdlN3MTF

Entry point:
3C, 21, 44, 4F, 43, 54, 59, 50, 45, 20, 68, 74, 6D, 6C, 3E, 0A, 3C, 68, 74, 6D, 6C, 20, 63, 6C, 61, 73, 73, 3D, 22, 22, 20, 6C, 61, 6E, 67, 3D, 22, 66, 72, 2D, 46, 52, 22, 20, 70, 72, 65, 66, 69, 78, 3D, 22, 6F, 67, 3A, 20, 68, 74, 74, 70, 3A, 2F, 2F, 6F, 67, 70, 2E, 6D, 65, 2F, 6E, 73, 23, 20, 66, 62, 3A, 20, 68, 74, 74, 70, 3A, 2F, 2F, 6F, 67, 70, 2E, 6D, 65, 2F, 6E, 73, 2F, 66, 62, 23, 22, 0A, 09, 69, 74, 65, 6D, 73, 63, 6F, 70, 65, 20, 0A, 09, 69, 74, 65, 6D, 74, 79, 70, 65, 3D, 22, 68, 74, 74, 70, 3A...
 
[+]

The file zhpdiag3.exe has been seen being distributed by the following URL.

Scan zhpdiag3.exe - Powered by Reason Core Security