adobe-flash_player_2015_.exe

The executable adobe-flash_player_2015_.exe has been detected as malware by 17 anti-virus scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from bit.ly and multiple other hosts.
MD5:
570c698623780a23aab2363712c93c27

SHA-1:
54716c162deed0332a7c6adf085ae82caea13c62

SHA-256:
d290437ba81de6a71a320661c5bc90c1e49c24c80f732e6adacf75178dbac202

Scanner detections:
17 / 68

Status:
Malware

Analysis date:
7/8/2025 1:39:23 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Symmi.56028
502

Avira AntiVirus
TR/Crypt.Xpack.279728
8.3.2.2

Arcabit
Trojan.Symmi.DDADC
1.0.0.545

Bitdefender
Gen:Variant.Symmi.56028
1.0.20.1315

Bkav FE
HW32.Packed
1.3.0.7237

Emsisoft Anti-Malware
Gen:Variant.Symmi.56028
8.15.09.20.02

ESET NOD32
Win32/TrojanDownloader.Banload.WML (variant)
9.12277

Fortinet FortiGate
W32/Generic.WML!tr
9/20/2015

F-Secure
Gen:Variant.Symmi.56028
11.2015-20-09_1

G Data
Gen:Variant.Symmi.56028
15.9.25

IKARUS anti.virus
Trojan-Spy.Win32.Banker.add
t3scan.1.9.5.0

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.1397

MicroWorld eScan
Gen:Variant.Symmi.56028
16.0.0.789

Quick Heal
(Suspicious) - DNAScan
9.15.14.00

Sophos
Mal/Generic-S
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Banload
9618

Vba32 AntiVirus
Trojan.Svchost.5505
3.12.26.4

File size:
900.1 KB (921,753 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adobe-flash_player_2015_.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:acr3er7vcigwOO/aYR3Vj/gfgMF363OWXRzW3NxU:acrOftgwOQaYYfgKkHX5W3U

Entry address:
0x1C1000

Entry point:
60, 77, 01, F9, 48, C1, CD, 9F, F8, 76, 01, 4D, F8, 76, 03, 66, 8B, EF, 66, 8B, F2, 87, F5, BE, 84, 05, CE, 4C, 68, E1, 10, 5C, 00, 0F, 8D, 03, 00, 00, 00, C1, E6, E6, 58, 87, CE, 66, B9, 7F, 27, BB, 85, DB, 61, E3, 42, 81, F3, 7D, 17, 59, 8F, FC, 68, 29, 00, 00, 00, 4E, 5F, E9, 05, 00, 00, 00, 66, 81, E6, F1, AF, 8B, 28, D3, D9, 03, EB, E9, 03, 00, 00, 00, 66, 0B, CB, C1, CD, 01, C1, D1, 83, 03, 68, 04, 41, 8B, D5, 89, 28, F9, 85, CE, 81, EB, 7F, B5, 11, D1, EB, 0A, E8, EB, 19, 7C, E8, 0B, 00, 00, 00, 73...
 
[+]

Code size:
1.8 MB (1,924,608 bytes)

The file adobe-flash_player_2015_.exe has been seen being distributed by the following 8 URLs.

http://bit.ly/1LDAxRw

http://159.8.240.180-static.reverse.softlayer.com/.../Adobe_Flash_Player_2015.exe

Remove adobe-flash_player_2015_.exe - Powered by Reason Core Security