adberdr11000_en_us.exe

Adobe Self Extractor

Adobe Systems, Incorporated

This is a setup program which is used to install the application. The file has been seen being downloaded from fs13.filehippo.com and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed by Adobe Systems, Incorporated)

Product:
Adobe Self Extractor

Version:
11.0.0.379

MD5:
bddd3d06af44ff7497f2c5125553a5ba

SHA-1:
b733f9fd4d376de4a1a671669090805c8c79dab3

SHA-256:
ca4f238d5765c6ba76f05e2af9ab496d9eabee1f5d8935c32d643ac125e02ef3

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 11:26:36 AM UTC  (today)

File size:
36.1 MB (37,868,688 bytes)

Product version:
11.0.0.379

Copyright:
Copyright 2012 Adobe Systems Incorporated. All rights reserved.

Original file name:
AdobeSelfExtractor.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\ProgramData\adobe\reader\9.5\arm\adberdr11000_en_us.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/19/2012 8:00:00 PM

Valid to:
9/20/2013 7:59:59 PM

Subject:
CN="Adobe Systems, Incorporated", OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Acrobat XI, O="Adobe Systems, Incorporated", L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
09AC064D052817FF4D7942EA6976C3D8

File PE Metadata
Compilation timestamp:
9/23/2012 10:26:38 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
786432:zHvdIIEn7cdkk56x3VIvMMOui6eDM3DJpIKM+/EDme8q56Pl3i:zPdCnoKPVEOuTeWvEae68

Entry address:
0x1C6B3

Entry point:
E8, B1, 6E, 00, 00, E9, 79, FE, FF, FF, 3B, 0D, FC, 1C, 44, 00, 75, 02, F3, C3, E9, 33, 6F, 00, 00, 6A, 0C, 68, 28, D6, 43, 00, E8, C0, 23, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, E0, 6E, 44, 00, 03, 75, 43, 6A, 04, E8, 92, 71, 00, 00, 59, 83, 65, FC, 00, 56, E8, BA, 71, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, DB, 71, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, 7E, 70, 00, 00, 59, C3, 56, 6A, 00, FF, 35, E4, 56, 44...
 
[+]

Entropy:
7.9992  (probably packed)

Code size:
201.5 KB (206,336 bytes)

The file adberdr11000_en_us.exe has been discovered within the following programs.

Angry Birds Rio  by Rovio
Publisher's description - “In Angry Birds Rio, the original Angry Birds are kidnapped and taken to the magical city of Rio de Janeiro, where they eventually escape their captors and set out to save their friends, Blu and Jewel – two rare macaws and the stars of the hit motion picture, Rio.”
www.rovio.com
9% remove it
Eye Pro  by Classle Soft
www.classlesoft.in/eye-pro
9% remove it
OrthoWin Service Console  by Orthema Holding Ltd.
www.orthema.com
About 1% of users remove it
 
Powered by Should I Remove It?

The file adberdr11000_en_us.exe has been seen being distributed by the following 3 URLs.