install_reader10_en_gtba_aih.exe

Adobe Reader Installer

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from aihdownload.adobe.com and multiple other hosts.
Publisher:
Solid State Networks  (signed by Adobe Systems Incorporated)

Product:
Adobe Reader Installer

Version:
3.2.2.2

MD5:
634fa825ecde93c91dd8a5a98c3b2551

SHA-1:
933c26e78f904a9a6fb12982b7475ae6d8ae5e21

SHA-256:
c20d86063a541f03e2970d8ac28b72006b3b55ea3f1b13948967fd271f66dbb5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 3:51:38 AM UTC  (today)

File size:
748.8 KB (766,728 bytes)

Product version:
3.2.2.2

Copyright:
Copyright (C) Adobe Systems Incorporated

Original file name:
host.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\install_reader10_en_gtba_aih.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/15/2010 2:00:00 AM

Valid to:
12/15/2012 1:59:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Information Systems, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15E5AC0A487063718E39DA52301A0488

File PE Metadata
Compilation timestamp:
3/3/2012 11:28:04 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:bsTlfmmidvg/4r/wE1Tr4qWkpVfMOegMIES+vUnOfvN7Suq6b6HQq98sZBjf:bKdvid4I/wER4MVf+gM7SB8QB6M98sZB

Entry address:
0x695B0

Entry point:
60, BE, 00, F0, 43, 00, 8D, BE, 00, 20, FC, FF, 57, EB, 0B, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, 0B, 75, 28, 8B, 1E, 83, EE, FC, 11, DB, 72, 1F, 48, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, EB, D4, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, EB, 52, 31, C9, 83, E8, 03, 72, 11, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 75, D1, F8, 89, C5, EB, 0B, 01, DB, 75, 07, 8B...
 
[+]

Entropy:
7.9732

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.24

Code size:
172 KB (176,128 bytes)

The file install_reader10_en_gtba_aih.exe has been discovered within the following program.

BitTorrent  by BitTorrent Inc.
BitTorrent is a desktop application that allows you to work with torrent files.BitTorrent allows you to download files available as torrents, search torrent sites for music, videos, books, software and other free or public domain material.
www.bittorrent.com
7% remove it
 
Powered by Should I Remove It?

The file install_reader10_en_gtba_aih.exe has been seen being distributed by the following 19 URLs.

http://aihdownload.adobe.com/.../install_reader10_es_gtbd_aih.exe

http://www.matrasadviesnederland.nl/adobereader.exe

http://aihdownload.adobe.com/.../install_reader10_de_mssd_aih.exe

http://aihdownload.adobe.com/.../install_reader10_en_gtbd_aih.exe

http://aihdownload.adobe.com/.../install_reader10_br_mssa_aih.exe