install_flash_player_ax.exe

Adobe Flash Player Installer/Uninstaller

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from letoltes.szoftverbazis.hu and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe® Flash® Player Installer/Uninstaller

Description:
Adobe® Flash® Player Installer/Uninstaller 12.0 r0

Version:
12,0,0,38

MD5:
b4bbe8fccdff22f235ea5dc788a1908a

SHA-1:
8deb33bcbbbbecfcbcbeb0f861d2c7492599da2b

SHA-256:
287c5f83d846da239d69b144a9262e3fff98e8728707515d6ee335a6e674593b

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 11:04:37 AM UTC  (today)

File size:
16.5 MB (17,297,288 bytes)

Product version:
12,0,0,38

Copyright:
Copyright © 1996 Adobe Systems Incorporated

Trademarks:
Adobe® Flash® Player

Original file name:
FlashUtil.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\adobe.flash.player.12.0.0.43.final.ouez.mazika2day.com\adobe.flash.player.12\adobe.flash.player.12.0.0.38.for.internet.explorer\install_flash_player_ax.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
2/24/2013 1:00:00 AM

Valid to:
2/26/2014 12:59:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Flash Player - Fortnight, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
2136329A167A6FD6BF4BB5E8778E0BFB

File PE Metadata
Compilation timestamp:
12/14/2013 2:43:55 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
393216:NmUHXlfFcY3+Q+f70jTe5gJ01YZzjSFkq3HKpaT:4kliA+YeKYKzOdXKp0

Entry address:
0x1CC0C

Entry point:
E8, FB, 5B, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 56, 8B, 75, 0C, F6, 46, 0C, 40, 57, 75, 79, 56, E8, 8D, 09, 00, 00, 59, BA, 98, 15, 43, 00, 83, F8, FF, 74, 1B, 83, F8, FE, 74, 16, 8B, C8, 83, E1, 1F, 8B, F8, C1, FF, 05, C1, E1, 06, 03, 0C, BD, 40, 2D, 43, 00, EB, 02, 8B, CA, F6, 41, 24, 7F, 75, 26, 83, F8, FF, 74, 19, 83, F8, FE, 74, 14, 8B, C8, 83, E0, 1F, C1, F9, 05, C1, E0, 06, 03, 04, 8D, 40, 2D, 43, 00, EB, 02, 8B, C2, F6, 40, 24, 80, 74, 1F, E8, 45, 17, 00, 00, 33, FF, 57, 57, 57, 57, 57...
 
[+]

Entropy:
7.9981  (probably packed)

Code size:
160 KB (163,840 bytes)

The file install_flash_player_ax.exe has been discovered within the following programs.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
8% remove it
 
Powered by Should I Remove It?

The file install_flash_player_ax.exe has been seen being distributed by the following 50 URLs.

http://letoltes.szoftverbazis.hu/PhUQSyCHeO0geW7khX3Bvg/1397581383/.../install_flash_player_12_active_x.exe

http://www.filepuma.com/file/1390047276c5010/adobe_flash_player_ie_12.0.0.38/.../0/

http://ostandari.info/wp-content/.../install_flash_player_activex.exe

http://letoltes.szoftverbazis.hu/jci1giW9yFKuiPCeTzlMOA/1473266254/.../install_flash_player_12_active_x.exe

http://letoltes.szoftverbazis.hu/GaTb7QLx5B3vh45w-jpkJQ/1396633880/.../install_flash_player_12_active_x.exe

about:internet

Latest 30 of 75 download URLs