adobe_flash_player 2015.exe

The executable adobe_flash_player 2015.exe has been detected as malware by 16 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from storage.googleapis.com.
MD5:
a052fd354b3269757f06db31225a03b5

SHA-1:
55967bfc934b41c9a734f9d7bee47c65bd98f25d

SHA-256:
646e070cefafc8226c6072a9fdd5f6f0c09d1dac66a4b75618876f56372a0219

Scanner detections:
16 / 68

Status:
Malware

Analysis date:
4/25/2024 2:17:43 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Graftor
7.1.1

Avira AntiVirus
TR/Graftor.1966080.10
8.3.2.4

avast!
Win32:Malware-gen
2014.9-160105

AVG
Generic13_c
2017.0.2874

IKARUS anti.virus
Trojan.Win32.Dynamer
t3scan.1.9.5.0

K7 AntiVirus
Riskware
13.212.18027

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.864

McAfee
Artemis!A052FD354B32
5600.6530

Microsoft Security Essentials
Trojan:Win32/Dynamer!ac
1.1.12300.0

Panda Antivirus
Trj/CI.A
16.01.05.03

Quick Heal
Trojan.Dyname.g8
1.16.14.00

Total Defense
Win32/Dynamer.ZADO!suspicious
37.1.62.1

Trend Micro
TROJ_GEN.R00XC0DIK15
10.465.05

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
45666

ViRobot
Trojan.Win32.Z.Graftor.1966080.A[h]
2014.3.20.0

File size:
1.9 MB (1,966,080 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adobe_flash_player 2015.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:QQ5xHfXprTeWDAZgXyBD4ChgR8Ffa/86FcPQGYckTkmzfHijY5JLZFT3ZtXeTECY:vf5Bv8PKTkmzJT3/uTBTP0FO

Entry address:
0x196948

Entry point:
55, 8B, EC, B9, 0E, 00, 00, 00, 6A, 00, 6A, 00, 49, 75, F9, 53, 56, 57, B8, D8, 61, 59, 00, E8, DC, 03, E7, FF, 33, C0, 55, 68, AE, 6C, 59, 00, 64, FF, 30, 64, 89, 20, 68, C0, 6C, 59, 00, 6A, 00, 6A, 00, E8, 80, 06, E7, FF, E8, 0B, 08, E7, FF, 3D, B7, 00, 00, 00, 75, 0C, A1, 38, 3F, 5A, 00, 8B, 00, E8, 68, BB, EE, FF, 8D, 55, E8, B8, E4, 6C, 59, 00, E8, 57, F0, FF, FF, 8B, 45, E8, 8D, 55, EC, E8, 24, F1, FF, FF, 8B, 55, EC, B8, B0, 6E, 5A, 00, E8, F3, DB, E6, FF, 8D, 55, DC, 33, C0, E8, D9, F2, FF, FF, 8B...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
1.6 MB (1,662,464 bytes)

The file adobe_flash_player 2015.exe has been seen being distributed by the following URL.

Remove adobe_flash_player 2015.exe - Powered by Reason Core Security