adobe_flash_player-53578361-53578361.exe

Left Click Media

The application adobe_flash_player-53578361-53578361.exe has been detected as a potentially unwanted program by 3 anti-malware scanners. This is a setup program which is used to install the application. The file has been seen being downloaded from intva31.procedureconnect.info and multiple other hosts.
Publisher:
Left Click Media

Product:
Left Click Media

Version:
74.3.1.1111

MD5:
a8c9760749548885ff24e11769e8777d

SHA-1:
b2fa07d7166aac5923c9a77ef1e8f28e476dfa11

SHA-256:
555572428d315da1b16b3b7d50545b1dc5857b6e1c7dc131c427eedbaa81d4b1

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
11/15/2024 4:42:07 AM UTC  (today)

Scan engine
Detection
Engine version

Emsisoft Anti-Malware
Gen:Variant.Razy.19119
10.0.0.5366

ESET NOD32
Win32/DownloadAdmin.Q potentially unwanted application
8.0.319.0

Reason Heuristics
Adware.DownloadAdmin.LeftClickMedia.Installer.Meta (M)
16.2.19.22

File size:
887.2 KB (908,448 bytes)

Product version:
74.3.1.1111

Copyright:
Copyright (C) 2015

Original file name:
setup.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\adobe_flash_player-53578361-53578361.exe

File PE Metadata
Compilation timestamp:
2/1/2015 1:04:13 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:VUBsXePkUCllZfvxBaXxH6w25T87wsD6ql9FaI:mwePl9V25I8sDTl

Entry address:
0x4AE6

Entry point:
E8, 95, 97, 00, 00, E9, 9F, 90, 00, 00, FF, 25, F8, 7C, 4A, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 74, 7D, 4A, 00, 8B, FF, 55, 8B, EC, 56, 8B, 75, 08, 33, C0, EB, 0F, 85, C0, 75, 10, 8B, 0E, 85, C9, 74, 02, FF, D1, 83, C6, 04, 3B, 75, 0C, 72, EC, 5E, 5D, C3, CC, CC, CC, CC, CC, CC, FF, 25, 14, 7C, 4A, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, FF, 25, 58, 7D, 4A, 00, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, E8, 2B, 24, 00, 00, A1, DC, CD, 49, 00, 50, FF, 15, 28, 84, 4A, 00, 50, E8, A9, 05, 00...
 
[+]

Code size:
56.5 KB (57,856 bytes)

The file adobe_flash_player-53578361-53578361.exe has been seen being distributed by the following 50 URLs.

http://intva31.procedureconnect.info/dl-pure?usefilename=true&signature_id=0&_action_=getbin&filename=adobe_flash_player-53833883.exe&checksum=131648

http://intva18.componentsurf.info/dl-pure?usefilename=true&signature_id=0&_action_=getbin&filename=familyfeud-setup-48021313.exe&checksum=100550

http://intva31.procedureconnect.info/dl-pure?usefilename=true&signature_id=0&_action_=getbin&filename=adobe_flash_player-54590151 (4).exe&checksum=131648

Latest 30 of 144 download URLs

Remove adobe_flash_player-53578361-53578361.exe - Powered by Reason Core Security