flashplayer_22.0.0.exe

The executable flashplayer_22.0.0.exe has been detected as malware by 16 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from storage-eu-10.sharefile.com.
MD5:
4ca74f38118e06c2687e768c3b491444

SHA-1:
8374fc666651948a6950621d248abe85c8d84c11

SHA-256:
ee2e06852438efcc7f3adce37b34244786d6af8e299f232feee2a56327b2f0c9

Scanner detections:
16 / 68

Status:
Malware

Analysis date:
5/6/2024 7:23:40 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Cripack.Gen.1
393

AhnLab V3 Security
Win-Trojan/Teslacrypt.Gen
2015.12.19

Arcabit
Trojan.Cripack.Gen.1
1.0.0.629

avast!
Win32:Malware-gen
2014.9-160107

Bitdefender
Trojan.Cripack.Gen.1
1.0.20.35

Emsisoft Anti-Malware
Trojan.Cripack.Gen
8.16.01.07.06

ESET NOD32
Win32/Kryptik.EHRJ (variant)
10.12747

Fortinet FortiGate
W32/Kryptik.EFAD!tr
1/7/2016

F-Secure
Trojan.Cripack.Gen.1
11.2016-07-01_5

G Data
Trojan.Cripack.Gen
16.1.25

McAfee
Artemis!4CA74F38118E
5600.6527

Microsoft Security Essentials
Trojan:Win32/Dynamer!ac
1.1.12400.0

MicroWorld eScan
Trojan.Cripack.Gen.1
17.0.0.21

Qihoo 360 Security
QVM07.1.Malware.Gen
1.0.0.1077

Sophos
Mal/Ransom-DK
4.98

Vba32 AntiVirus
SScope.Malware-Cryptor.Drixed
3.12.26.4

File size:
444 KB (454,656 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\flashplayer_22.0.0.exe

File PE Metadata
Compilation timestamp:
7/29/2007 3:37:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.0

CTPH (ssdeep):
6144:r07G9Gu81Y9J61Kc+gXM+N9USA0Y0euqN5eTmiZe0eAg/LOdByPVN:oG9Gu8u9J61Kc+AM+N9US5qN5eTm8x6

Entry address:
0x1C1C8

Entry point:
55, 8B, EC, 6A, FF, 68, D8, F3, 41, 00, 68, 50, C3, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 68, 53, 56, 57, 89, 65, E8, 33, DB, 89, 5D, FC, 6A, 02, FF, 15, E0, D2, 41, 00, 59, 83, 0D, C8, 2B, 4E, 00, FF, 83, 0D, CC, 2B, 4E, 00, FF, FF, 15, 1A, C2, 41, 00, 8B, 0D, C4, 2B, 4E, 00, 89, 08, FF, 15, 25, FF, 40, 00, 8B, 0D, C0, 2B, 4E, 00, 89, 08, A1, EC, D2, 41, 00, 8B, 00, A3, D0, 2B, 4E, 00, E8, 10, 01, 00, 00, 39, 1D, 90, 6B, 43, 00, 75, 0C, 68, 44, C3, 41, 00, FF, 15, D4, D2...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
112 KB (114,688 bytes)

The file flashplayer_22.0.0.exe has been seen being distributed by the following URL.

Remove flashplayer_22.0.0.exe - Powered by Reason Core Security