zwz0701.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from 113.171.224.203 and multiple other hosts.
MD5:
cedf559c23ca2c3cda94603ac3923eea

SHA-1:
3cbac66743d716fe711393c793bc8248b7a2ae64

SHA-256:
b42a45522e8532dcbdcee672ac2adb065077d2d43a1300de1092ed5f4cef534c

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
2/25/2025 4:20:47 AM UTC  (today)

File size:
20.2 MB (21,194,910 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\zwz0701.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
393216:4oRJ2ZmXoC67ec56Rq3XszM8fQ7riD4yCl9x2tM3csxautuO+x52+EMk1:iqaivI8z/ertd32tM9a4O55EMi

Entry point:
37, 7A, BC, AF, 27, 1C, 00, 03, F7, A8, 3E, DA, 5A, 68, 43, 01, 00, 00, 00, 00, 24, 00, 00, 00, 00, 00, 00, 00, D4, BC, CB, FC, 00, 36, 88, 18, CF, 53, E8, 37, 2C, 28, 10, CE, 5A, FC, D8, AD, 34, 5D, 65, 1E, B4, 9B, C8, 8F, CD, 3C, 18, 5B, 25, 23, 20, 51, 49, C3, 1D, 31, 32, BB, 9A, 06, 0F, 88, 76, 84, 19, BA, BC, D8, 3E, A6, C2, 43, FE, 88, 90, 9D, 09, 4E, 2C, 6F, C6, B6, C8, E9, EC, 0C, E6, 27, 9F, D0, 18, 45, 7C, 7F, 51, 0F, F4, 95, 19, D5, E5, D1, F5, 55, F4, FD, BD, AA, 76, C0, 13, E2, 71, 19, 96, E5...
 
[+]

The file zwz0701.exe has been seen being distributed by the following 2 URLs.

http://113.171.224.203/.../zwz0701.exe

Scan zwz0701.exe - Powered by Reason Core Security