adobe flash player 2015.exe

The executable adobe flash player 2015.exe has been detected as malware by 8 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from bit.ly and multiple other hosts.
MD5:
7336302b1e86eabdb282b8a9b8a3b54e

SHA-1:
2a2c6f76b7ec1f7ca1e1044e054c733780feade2

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
7/8/2025 12:16:11 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
Luhe.Fiha.A
2016.0.2962

Bkav FE
HW32.Packed
1.3.0.7237

IKARUS anti.virus
Trojan-Spy.Win32.Banker.add
t3scan.1.9.5.0

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.1306

Quick Heal
(Suspicious) - DNAScan
10.15.14.00

Rising Antivirus
PE:Packer.Win32.Mian007.a!493501[F1]
23.00.65.151006

SUPERAntiSpyware
Trojan.Agent/Gen-Banload
9581

Vba32 AntiVirus
Trojan.Svchost.5505
3.12.26.4

File size:
604.6 KB (619,161 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\documents and settings\administrador\meus documentos\downloads\adobe flash player 2015.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:ya05T8uYOfunw0nEIP/b6VZkGqjIfalNXZ4c3flu0QWWhZYWkbW/48o:fLOf+np80Hec3fqfB7o

Entry address:
0x11E000

Entry point:
60, 66, C1, C9, 33, 0F, 83, 01, 00, 00, 00, 40, 87, F1, 0F, 89, 02, 00, 00, 00, D3, D9, 0F, 86, 03, 00, 00, 00, 66, 2B, D9, 66, B9, 1A, 42, 0F, 85, 04, 00, 00, 00, 66, BE, DB, F5, EB, 0A, E9, EB, 19, 77, E8, 0B, 00, 00, 00, 7F, 72, F8, 73, F6, 76, 7E, F0, 7F, EE, 79, 83, C4, 04, 7E, F6, 7F, F4, 78, 4B, E8, 0C, 00, 00, 00, EB, 7A, 19, 7B, 17, 72, E8, 0C, 00, 00, 00, EB, 83, C4, 04, 7C, F5, 7D, F3, 77, EB, EB, 7E, 83, 04, 24, 09, C3, 66, B9, B6, D2, 87, D9, BA, 26, E1, 51, 00, E9, 05, 00, 00, 00, BD, 80, 1A...
 
[+]

Code size:
1.2 MB (1,249,792 bytes)

The file adobe flash player 2015.exe has been seen being distributed by the following 3 URLs.

Remove adobe flash player 2015.exe - Powered by Reason Core Security