adobe flash player 2015.exe

MODULAR SOFTWARES

The executable adobe flash player 2015.exe, “MODULAR SOFTWARES” has been detected as malware by 11 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from storage.googleapis.com and multiple other hosts.
Publisher:
MODULAR SOFTWARES

Description:
MODULAR SOFTWARES

Version:
106.307.11.5

MD5:
f066b314c08e1e40528fe89f5d15f7b8

SHA-1:
e5f23b410658fe6e58ab4a776c3aeb98e7c6b677

SHA-256:
e779c6551f94cb5b638d5afe568ce163eea722812afd919b55d347e976f9e885

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/24/2024 9:09:53 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.158404
507

AhnLab V3 Security
Trojan/Win32.Banload
2015.09.10

Avira AntiVirus
TR/Dldr.Banload.691
8.3.2.2

Arcabit
Trojan.Zusy.D26AC4
1.0.0.525

Baidu Antivirus
Trojan.Win32.Banload
4.0.3.15915

Bitdefender
Gen:Variant.Zusy.158404
1.0.20.1290

Emsisoft Anti-Malware
Gen:Variant.Zusy.158404
8.15.09.15.11

ESET NOD32
Win32/TrojanDownloader.Banload.WIW (variant)
9.12230

F-Secure
Gen:Variant.Zusy.158404
11.2015-15-09_3

G Data
Gen:Variant.Zusy.158404
15.9.25

MicroWorld eScan
Gen:Variant.Zusy.158404
16.0.0.774

File size:
2.8 MB (2,898,944 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
Africâner (África do Sul)

Common path:
C:\users\{user}\downloads\adobe flash player 2015.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:GQ/Q72uzu+BqO9nysKruXqAQZpGrE7ikA24giPNTaJTkTPU6QB:GQ/S7nyuaZGrEOkAHPm

Entry address:
0x268F34

Entry point:
55, 8B, EC, 83, C4, F0, B8, 14, 85, 66, 00, E8, 60, E0, D9, FF, 68, CC, 8F, 66, 00, 6A, 00, 6A, 00, E8, D6, E3, D9, FF, E8, 61, E5, D9, FF, 3D, B7, 00, 00, 00, 75, 0C, A1, 38, 70, 67, 00, 8B, 00, E8, C2, 96, E0, FF, A1, 38, 70, 67, 00, 8B, 00, E8, 32, 95, E0, FF, 6A, EC, A1, 38, 70, 67, 00, 8B, 00, 8B, 40, 30, 50, E8, 28, ED, D9, FF, 0D, 80, 00, 00, 00, 50, 6A, EC, A1, 38, 70, 67, 00, 8B, 00, 8B, 40, 30, 50, E8, 58, EF, D9, FF, 8B, 0D, 24, 73, 67, 00, A1, 38, 70, 67, 00, 8B, 00, 8B, 15, 68, 68, 66, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.4 MB (2,523,136 bytes)

The file adobe flash player 2015.exe has been seen being distributed by the following 3 URLs.

https://storage.googleapis.com/.../Adobe Flash Player 2015.exe

Remove adobe flash player 2015.exe - Powered by Reason Core Security