install_flashplayer14x32_mssd_aaa_aih3s.exe

The executable install_flashplayer14x32_mssd_aaa_aih3s.exe has been detected as malware by 12 anti-virus scanners.
MD5:
cb7de4c0bf402e3b2261d66674d7b826

SHA-1:
ea3fea652e282e69e24bc5a84f9f285993385c2d

SHA-256:
00ce389ffaf8debf2dd624afc1c5462fe37ddba2c5654ad7c364af8723978198

Scanner detections:
12 / 68

Status:
Malware

Analysis date:
4/27/2024 1:19:25 PM UTC  (today)

Scan engine
Detection
Engine version

Arcabit
Trojan.Generic.DC90E4F
1.0.0.741

Bitdefender
Trojan.Generic.13176399
1.0.20.375

Emsisoft Anti-Malware
Trojan.Generic.13176399
8.17.03.16.08

ESET NOD32
Win32/TrojanDownloader.Delf.APK (variant)
11.13730

Fortinet FortiGate
W32/Generic.APK!tr
3/16/2017

G Data
Trojan.Generic.13176399
17.3.25

IKARUS anti.virus
Trojan.Win32.Vobfus
t3scan.2.1.6.0

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-1317

McAfee
Artemis!CB7DE4C0BF40
5600.6094

NANO AntiVirus
Trojan.Win32.Vobfus.dctsxq
1.0.38.8984

Panda Antivirus
Trj/Genetic.gen
17.03.16.08

VIPRE Antivirus
Trojan.Win32.Generic
50498

File size:
901.5 KB (923,136 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\install_flashplayer14x32_mssd_aaa_aih3s.exe

File PE Metadata
Compilation timestamp:
7/27/2014 11:15:20 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xBEC58

Entry point:
55, 8B, EC, 83, C4, F0, B8, 24, 87, 4B, 00, E8, 04, B3, F4, FF, A1, 74, 13, 4C, 00, 8B, 00, E8, 48, 51, FF, FF, A1, 74, 13, 4C, 00, 8B, 00, C6, 40, 5B, 00, A1, 74, 13, 4C, 00, 8B, 00, B2, 01, E8, 6B, 6E, FF, FF, 8B, 0D, E0, 14, 4C, 00, A1, 74, 13, 4C, 00, 8B, 00, 8B, 15, 6C, 62, 4B, 00, E8, 2F, 51, FF, FF, A1, 74, 13, 4C, 00, 8B, 00, E8, 73, 52, FF, FF, E8, FE, 71, F4, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
756.5 KB (774,656 bytes)

Remove install_flashplayer14x32_mssd_aaa_aih3s.exe - Powered by Reason Core Security