install_flash_player_ax.exe

Adobe Flash Player Installer/Uninstaller

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from program.avast.com and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe® Flash® Player Installer/Uninstaller

Description:
Adobe® Flash® Player Installer/Uninstaller 11.9 r900

Version:
11,9,900,170

MD5:
9204b6c1497474f9327ed8b6739c4101

SHA-1:
5f660f218131d39a707557218c89fdec36f91c6e

SHA-256:
328496fdb71ddd4aa390f8ab6f458e7411ed089ab70d81b49e2ac173ba6be7a6

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/19/2024 2:36:23 AM UTC  (today)

File size:
16.4 MB (17,248,136 bytes)

Product version:
11,9,900,170

Copyright:
Copyright © 1996 Adobe Systems Incorporated

Trademarks:
Adobe® Flash® Player

Original file name:
FlashUtil.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/24/2013 5:30:00 AM

Valid to:
2/26/2014 5:29:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Flash Player - Fortnight, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2136329A167A6FD6BF4BB5E8778E0BFB

File PE Metadata
Compilation timestamp:
12/1/2013 11:38:12 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:E7ra++KqIHEWZPWQ3Kbtj0W/zphY3XBBTIvaHXwNOtElfnvk9:QWzDgrKbtYczLY3x5IvakOtEl/o

Entry address:
0x1CC0C

Entry point:
E8, FB, 5B, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, 75, 0C, F6, 46, 0C, 40, 57, 75, 79, 56, E8, 8D, 09, 00, 00, 59, BA, 98, 15, 43, 00, 83, F8, FF, 74, 1B, 83, F8, FE, 74, 16, 8B, C8, 83, E1, 1F, 8B, F8, C1, FF, 05, C1, E1, 06, 03, 0C, BD, 40, 2D, 43, 00, EB, 02, 8B, CA, F6, 41, 24, 7F, 75, 26, 83, F8, FF, 74, 19, 83, F8, FE, 74, 14, 8B, C8, 83, E0, 1F, C1, F9, 05, C1, E0, 06, 03, 04, 8D, 40, 2D, 43, 00, EB, 02, 8B, C2, F6, 40, 24, 80, 74, 1F, E8, 45, 17, 00, 00, 33, FF, 57, 57, 57, 57, 57...
 
[+]

Entropy:
7.9980  (probably packed)

Code size:
160 KB (163,840 bytes)

The file install_flash_player_ax.exe has been discovered within the following program.

Toolwiz Care  by ToolWiz
Publisher's description - “ToolWiz Care is a set of free-of-charge tools designed to speed up your PC and give your system a full range of care.”
www.Toolwiz.com
4% remove it
 
Powered by Should I Remove It?

The file install_flash_player_ax.exe has been seen being distributed by the following 38 URLs.

http://program.avast.com/.../?action=2&p_aas=0&p_adp=0000&p_age=1&p_bid=60E881FBE60589490FA4C54059BE6F5120AD8D6FA9456DD3EBF6AAAB351D8CF9&p_cid=1&p_cpv=117442018&p_elm=59&p_idw=0&p_iid=0&p_inf=2&p_lan=1033&p_lci=1033&p_let=24&p_lex=7677&p_lic=0&p_lid=en-us&p_lng=en&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=0&p_rcv=1&p_reh=768&p_rew=1366&p_vbd=1506&p_vep=7&p_ves=0&p_wnf=0

http://www.filepuma.com/file/1389650027c4806/adobe_flash_player_ie_11.9.900.170/.../0/

http://www.avast.com/program/.../?action=2&p_age=1832&p_bld=cnet2011&p_cid=1&p_cpv=100664663&p_elm=59&p_eml=chancedaniels31@yahoo.com&p_idw=0&p_iid=0&p_inf=0&p_lan=1033&p_lci=1033&p_let=24&p_lex=90&p_lic=0&p_lid=en-us&p_lit=3776776&p_lng=en&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=0&p_rcv=1&p_reh=768&p_rew=1366&p_tri=0&p_uid=8adf&p_vbd=1367&p_vep=6&p_ves=0&p_wnf=0

https://program.avast.com/.../?action=2&p_aas=0&p_adp=0000&p_age=144&p_cid=1&p_cnm=HADJI-PC&p_cpv=117441986&p_elm=59&p_idw=0&p_iid=0&p_inf=50013&p_lan=1036&p_lci=1036&p_let=24&p_lex=29&p_lic=0&p_lid=fr-fr&p_lng=fr&p_lqa=0&p_lqe=0&p_lst=1&p_lsu=24&p_man=0&p_osv=6.1&p_pro=0&p_rcv=1&p_reh=900&p_rew=1600&p_vbd=1474&p_vep=7&p_ves=0&p_wnf=1

https://program.avast.com/.../?action=2&p_aas=0&p_adc=0&p_adp=0000&p_age=0&p_cid=1&p_cnm=REMUS-PC&p_cpv=134219210&p_elm=59&p_hid=2bfcf58f-a8b3-4801-b752-ea758b2d24ea&p_idw=0&p_iid=0&p_inf=0&p_lan=1048&p_lci=1048&p_let=24&p_lex=365&p_lic=0&p_lid=ro-ro&p_lng=ro&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_mdc=0&p_osv=6.1&p_pro=0&p_reh=864&p_rew=1152&p_vbd=1482&p_vep=8&p_ves=0&p_wdc=0&p_wnf=0

http://program.avast.com/.../?action=2&p_aas=0&p_adp=0000&p_age=0&p_cid=0&p_cpv=117441986&p_elm=59&p_ext=chrome&p_idw=0&p_iid=0&p_inf=0&p_lan=3082&p_lci=3082&p_let=24&p_lex=172&p_lic=0&p_lid=es-es&p_lit=0&p_lng=es&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=1&p_rcv=1&p_reh=768&p_rew=1280&p_vbd=1474&p_vep=7&p_ves=0&p_wnf=0

https://program.avast.com/.../?action=2&p_aas=0&p_adp=0000&p_age=8&p_cid=1&p_cnm=USER-PC&p_cpv=117441986&p_elm=59&p_idw=0&p_iid=0&p_inf=2&p_lan=1028&p_lci=1028&p_let=24&p_lex=8319&p_lic=0&p_lid=zh-tw&p_lng=tw&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=0&p_rcv=1&p_reh=1050&p_rew=1680&p_vbd=1474&p_vep=7&p_ves=0&p_wnf=0

http://program.avast.com/.../?action=2&p_aas=0&p_adp=0000&p_age=18&p_bid=2B4A1CD5659E8C50E19A1F9633E8EBB1C2032AB13FF0F9C593E2F2A5A95A96EC&p_cid=1&p_cpv=117442792&p_elm=59&p_idw=0&p_iid=0&p_inf=3&p_lan=1046&p_lci=1046&p_let=24&p_lex=7755&p_lic=0&p_lid=pt-br&p_lng=pt&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=0&p_rcv=1&p_reh=768&p_rew=1360&p_vbd=2280&p_vep=7&p_ves=0&p_wnf=0

https://program.avast.com/.../?action=2&p_aam=i8jsJjY6yOzMwQvi&p_aas=1&p_adp=0000&p_age=5037&p_cid=0&p_cnm=ADMIN-KOMPUTER&p_cpv=117442757&p_elm=59&p_idw=0&p_iid=0&p_inf=4&p_lan=1045&p_lci=1045&p_let=24&p_lex=346&p_lic=0&p_lid=pl-pl&p_lit=0&p_lng=pl&p_lqa=0&p_lqe=0&p_lst=0&p_lsu=24&p_man=0&p_osv=6.1&p_pro=2&p_rcv=1&p_reh=1050&p_rew=1680&p_tra=723&p_vbd=1506&p_vep=7&p_ves=0&p_wnf=0

ftp://drivers/Programs/.../install_flash_player_11.exe

Latest 30 of 38 download URLs