adobe flash player 2015.exe

Flash BOX

The executable adobe flash player 2015.exe has been detected as malware by 11 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from storage.googleapis.com and multiple other hosts.
Publisher:
Flash BOX

Description:
Flash BOX

Version:
1143.1343.1043.2443

MD5:
75863651a529cc100dc01921c9404e15

SHA-1:
df14f4e829d641dd38169924ae1498ef4d5e2236

SHA-256:
17f8f895580c9b2855b6733d46896f8614b13f30cd6f5c0347e4312746908e89

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/23/2024 11:05:36 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Graftor.219166
566

Arcabit
Trojan.Graftor.D3581E
1.0.0.425

Baidu Antivirus
Trojan.Win32.Banload
4.0.3.15718

Bitdefender
Gen:Variant.Graftor.219166
1.0.20.995

Emsisoft Anti-Malware
Gen:Variant.Graftor.219166
8.15.07.18.05

ESET NOD32
Win32/TrojanDownloader.Banload.WCL (variant)
9.11957

Fortinet FortiGate
W32/Banload.WCL!tr.dldr
7/18/2015

F-Secure
Gen:Variant.Graftor.219166
11.2015-18-07_7

G Data
Gen:Variant.Graftor.219166
15.7.25

IKARUS anti.virus
Virus.Win32.DelfInject
t3scan.1.9.5.0

MicroWorld eScan
Gen:Variant.Graftor.219166
16.0.0.597

File size:
1.7 MB (1,802,240 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Macedônio (Antiga República Iugoslava da Macedônia

Common path:
C:\users\{user}\downloads\adobe flash player 2015.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:Z2k9WjCmnWDAfsxBGgYSzaHo+pWGhgRbdymA/gmuv4gBQofzY2IF+F7zpIYoZTU/:YfyHrzaIxp9WuTBQaYk2HTPLT

Entry address:
0x1778D4

Entry point:
55, 8B, EC, 83, C4, F0, B8, FC, 72, 57, 00, E8, E8, F0, E8, FF, 68, 6C, 79, 57, 00, 6A, 00, 6A, 00, E8, 6E, F3, E8, FF, E8, 01, F5, E8, FF, 3D, B7, 00, 00, 00, 75, 0C, A1, FC, 45, 58, 00, 8B, 00, E8, C6, 2A, EF, FF, A1, FC, 45, 58, 00, 8B, 00, E8, 36, 29, EF, FF, 8B, 0D, 38, 48, 58, 00, A1, FC, 45, 58, 00, 8B, 00, 8B, 15, EC, 51, 57, 00, E8, 36, 29, EF, FF, 6A, EC, A1, FC, 45, 58, 00, 8B, 00, 8B, 40, 30, 50, E8, 38, FD, E8, FF, 0D, 80, 00, 00, 00, 50, 6A, EC, A1, FC, 45, 58, 00, 8B, 00, 8B, 40, 30, 50, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.5 MB (1,534,464 bytes)

The file adobe flash player 2015.exe has been seen being distributed by the following 2 URLs.

Remove adobe flash player 2015.exe - Powered by Reason Core Security