flashplayer.exe

Casterpack

Publisher:
Casterpack

Product:
Casterpack

Version:
2.07.0004

MD5:
46f52abbcbab8dde9c3d6f7ab2169ac8

SHA-1:
8d9b5ee040c1f3e5daf087f569494209a7d3cfcf

SHA-256:
1d74c258a991c2e5c4645073cb47650746ae31fadb722830ed5b8f3c83284017

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/25/2024 2:34:17 AM UTC  (today)

Scan engine
Detection
Engine version

Kaspersky
UDS:DangerousPattern.Multi.Generic
15.0.0.562

File size:
292 KB (299,057 bytes)

Product version:
2.07.0004

Original file name:
Casterpack.exe

File type:
Executable application (Win32 EXE)

Language:
Danish (Denmark)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\flashplayer.exe

File PE Metadata
Compilation timestamp:
1/4/2016 8:16:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:goGrhVYfL586CTJwQ6gznjelJSdqC8uSfC:g5rhVg58tTJw/gO8dl

Entry address:
0x10C4

Entry point:
68, D8, 38, 43, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 70, C1, 45, 27, F7, 08, 53, 43, 8A, A2, 44, 20, 0D, D2, 18, F1, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 04, 00, 00, 00, 50, 6F, 74, 65, 6E, 7A, 69, 65, 72, 74, 65, 73, 74, 65, 72, 37, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 10, 16, 27, 85, C5, 81, B7, 4B, 44, 96, 77, 1B, DC, AB, C5, 7F, 36, 95, 87, 7A, 8A, 8C, 6B, 0D, 45, 8E, 12, 88, AD, E3, EC, 07, 0E, 3A, 4F, AD...
 
[+]

Entropy:
7.2594

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
284 KB (290,816 bytes)

The file flashplayer.exe has been seen being distributed by the following URL.

Scan flashplayer.exe - Powered by Reason Core Security