adobeflashplayer12.0.exe

QUANTO SOLUCOES E SISTEMA LTDA

The executable adobeflashplayer12.0.exe has been detected as malware by 14 anti-virus scanners.
Publisher:
QUANTO SOLUCOES E SISTEMA LTDA  (signed and verified)

MD5:
e4eeb346a203614b0348e8eaee65c132

SHA-1:
aa05d86f40b0ea45d5f7a5c28d72caa6ccd2160a

SHA-256:
9cdc416baeaddb8a33a6d11ff532f68cd5e251819850ed2a0faae2d3d15edff8

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
4/19/2024 11:37:15 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.383414
739

avast!
Win32:Banker-KYB [Trj]
2014.9-150126

AVG
Win32/Blacked
2016.0.3217

Bitdefender
Gen:Variant.Kazy.383414
1.0.20.130

Emsisoft Anti-Malware
Gen:Variant.Kazy.383414
8.15.01.26.01

F-Secure
Gen:Variant.Kazy.383414
11.2015-26-01_2

G Data
Gen:Variant.Kazy.383414
15.1.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.6.1.0

McAfee
Artemis!E4EEB346A203
5600.6873

MicroWorld eScan
Gen:Variant.Kazy.383414
16.0.0.78

Qihoo 360 Security
Win32/Trojan.41e
1.0.0.1015

Trend Micro House Call
TROJ_GEN.F47V0531
7.2.26

Trend Micro
PAK_Generic.009
10.465.26

VIPRE Antivirus
Trojan.Win32.Packer.EnigmaProtector1.1X-1.3X
31796

File size:
1.3 MB (1,387,872 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\adobeflashplayer12.0.exe

Digital Signature
Authority:
Thawte, Inc.

Valid from:
4/3/2014 2:00:00 AM

Valid to:
4/4/2015 1:59:59 AM

Subject:
CN=QUANTO SOLUCOES E SISTEMA LTDA, O=QUANTO SOLUCOES E SISTEMA LTDA, L=PRESIDENTE PRUDENTE, S=SAO PAULO, C=BR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
00B87EDE3281FFB1EE77DF86B54A8CB0

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:U9j/kFAMrjNFHXN+ef3Zi6s23TD/S+AxRF2v+ClbsqEnGYAPiin:U9rkFR3ccTD/S+AxuWClonwiin

Entry address:
0x1BD53

Entry point:
55, 8B, EC, 83, C4, F0, B8, 00, 10, 40, 00, E8, 01, 00, 00, 00, 9A, 83, C4, 10, 8B, E5, 5D, E9, 71, 48, 40, 00, 05, 54, 42, 3B, 19, 3A, EB, EA, 3F, 2F, C3, CC, C8, 0B, EA, 0A, 8C, 06, 22, 90, CC, 05, 4D, 93, 5C, 2E, 79, 2B, A0, FB, 8D, 24, EA, 07, 98, F6, 79, 2A, 99, 12, 1F, 85, 27, 66, 43, DD, 47, 6B, E7, B4, 96, AE, F6, 92, B6, 01, 43, 52, 66, 5A, 07, 9C, C2, 07, 8F, 05, 16, 35, 41, 57, 2D, E3, E6, 42, 01, BA, 0F, 29, 03, 1D, D5, 09, B9, B5, EB, 99, 34, 44, 61, A2, 34, 65, 5E, E5, 35, 98, FA, E3, C3, 76...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
599 KB (613,376 bytes)

Remove adobeflashplayer12.0.exe - Powered by Reason Core Security