adobeflashplayer12.0.exe

QUANTO SOLUCOES E SISTEMA LTDA

Publisher:
QUANTO SOLUCOES E SISTEMA LTDA  (signed and verified)

MD5:
9bda8e4c7a69a34233fd1c91edb6cbbc

SHA-1:
104dd3b5e2c6e5b2c6ac23902249c9c10f038a7b

SHA-256:
4ab9ae7f69b1372daf11d3a76b8ca12d9238849ed6f67a6d887514553ec6ae46

Scanner detections:
4 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 7:43:26 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:FakeFlash-B [Trj]
2014.9-160122

Trend Micro House Call
PAK_Generic.009
7.2.22

Trend Micro
PAK_Generic.009
10.465.22

VIPRE Antivirus
Trojan.Win32.Packer.EnigmaProtector1.1X-1.3X
28534

File size:
2.2 MB (2,319,200 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\adobeflashplayer12.0.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/2/2014 9:00:00 PM

Valid to:
4/3/2015 8:59:59 PM

Subject:
CN=QUANTO SOLUCOES E SISTEMA LTDA, O=QUANTO SOLUCOES E SISTEMA LTDA, L=PRESIDENTE PRUDENTE, S=SAO PAULO, C=BR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
00B87EDE3281FFB1EE77DF86B54A8CB0

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:xSqo6WMupGmmwrlZdknuM5hazlxt0KN6+kLHsEIlpmSAPBUU/hEJ3vV:EbMuowDej5OnN6fLeAJUohEb

Entry address:
0x3CAB1

Entry point:
55, 8B, EC, 83, C4, F0, B8, 00, 10, 40, 00, E8, 01, 00, 00, 00, 9A, 83, C4, 10, 8B, E5, 5D, E9, 8B, ED, 89, 00, 16, CF, CB, EC, 83, A1, 7B, A6, 29, 9E, 33, 71, 9B, B2, 73, 32, 62, E2, 14, DD, 75, 2D, FD, 8E, 3D, E9, DD, 28, 2D, 50, 9C, B1, 36, 78, E9, 4E, 09, 73, F8, 26, 9F, 1D, BF, 85, DA, 4B, 6D, 8F, 1B, BC, DC, 21, BC, 17, 06, 9D, E1, 8B, 44, A6, A4, 46, 61, B8, 1A, B9, DC, EC, 41, 71, 98, 76, 50, 02, E4, E5, 03, 70, F9, 65, AD, BE, 88, E2, 3C, 54, 3A, F9, 7A, 9F, 26, 8A, 0A, FC, 86, 47, 46, 89, B0, DC...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
571 KB (584,704 bytes)

Scan adobeflashplayer12.0.exe - Powered by Reason Core Security