acrobatprodc_00000000000000000000000409.exe

Adobe Acrobat Installer

Adobe Systems, Incorporated

This is a setup and installation application. The file has been seen being downloaded from fcdn.softcdn.ru and multiple other hosts.
Publisher:
Adobe  (signed by Adobe Systems, Incorporated)

Product:
Adobe Acrobat Installer

Version:
3.6.1.4

MD5:
fd9e89c512285ff679d27d8861b05cc8

SHA-1:
a79513ef9e5d2669cd9d1e110baf5755ff6dbdbe

SHA-256:
11a37381c93d3e939cdbbece687ae43f6c3eed2e3e5f935b8372fb3cb46b9dec

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/25/2024 2:57:45 PM UTC  (today)

File size:
2 MB (2,066,496 bytes)

Product version:
1.3.0.20

Copyright:
Copyright © Adobe Systems Incorporated

Original file name:
host.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\acrobatprodc_00000000000000000000000409.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
7/16/2014 8:00:00 PM

Valid to:
7/17/2015 7:59:59 PM

Subject:
CN="Adobe Systems, Incorporated", OU=Acrobat XI, O="Adobe Systems, Incorporated", L=San Jose, S=California, C=US, SERIALNUMBER=2748129, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
7AA3C98FD96740972FCF8725373F3E50

File PE Metadata
Compilation timestamp:
2/19/2014 9:56:38 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:RI4LHKGY/pVewXBeJhCZHD82YmJ2FVod:VLHxYRYwwWjklY

Entry address:
0x6488D

Entry point:
E8, 8A, 4F, 00, 00, E9, 78, FE, FF, FF, 6A, 0C, 68, 98, AD, 48, 00, E8, 8D, 4D, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, 80, 74, 49, 00, 03, 75, 43, 6A, 04, E8, 74, 51, 00, 00, 59, 83, 65, FC, 00, 56, E8, 9C, 51, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, BD, 51, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, 60, 50, 00, 00, 59, C3, 56, 6A, 00, FF, 35, 94, 22, 49, 00, FF, 15, 3C, A1, 47, 00, 85, C0, 75, 16, E8, ED, 2B, 00...
 
[+]

Entropy:
7.3136

Code size:
481 KB (492,544 bytes)

The file acrobatprodc_00000000000000000000000409.exe has been seen being distributed by the following 28 URLs.

http://fcdn.softcdn.ru/4.html?sect=1486045502&parameter=Acrobat_Pro_DC_Rus_Setup.exe&secl=VruufxjPADiUH65ZJ2XigQ&clr=1

http://scdn.freeversions.ru/4.html?sect=1446504843&parameter=Acrobat_Pro_DC_Rus_Setup.exe&secl=9agij2YcZaJYpJsaGypT7A&clr=1

http://fcdn.softcdn.ru/4.html?sect=1478586089&parameter=Acrobat_Pro_DC_Rus_Setup.exe&secl=bcruRFggm8UVRR0PF96tLA&clr=1

http://fcdn.softcdn.ru/4.html?sect=1481094270&parameter=Acrobat_Pro_DC_Rus_Setup.exe&secl=d6DOXiPzItsG4WLaDDTDVQ&clr=1

http://moiprogrammy.net/.../1000004

http://fcdn.softcdn.ru/4.html?sect=1481297776&parameter=Acrobat_Pro_DC_Rus_Setup.exe&secl=sPUBVnIBPk_1iSx6nZCYCQ&clr=1