AdobeDownloadAssistant.exe

Adobe Systems Incorporated

This is a setup program which is used to install the application. The file has been seen being downloaded from www.netzwelt.de and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

MD5:
5b028722015240564755a49ddf48486c

SHA-1:
ed05b554f055e82b70fea8c92a53d60fe077c23a

SHA-256:
865e7b1aacd195aba2b728ae9e37798d97a50974a621335e7b70882a30396fd5

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
11/23/2024 1:42:53 AM UTC  (today)

Scan engine
Detection
Engine version

XVirus List
Win.Detected
2.3.31

File size:
2.4 MB (2,469,824 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\adobedownloadassistant.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/14/2012 8:00:00 PM

Valid to:
9/15/2013 7:59:59 PM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Production CS, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
608AAD6F0DED598AB98CBF81187C91BB

File PE Metadata
Compilation timestamp:
9/29/2010 5:52:46 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
49152:ARToLEUvPHaO6xcG6O5GJGfpneYRTkEiGJWLWHUdxyVf7JKwJLsz9yHlO6V9/6B:AaLECP69xYOMOjkEjFAyx1fAxWSB

Entry address:
0x12D2

Entry point:
E8, F5, 15, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 8B, 00, 81, 38, 63, 73, 6D, E0, 75, 2A, 83, 78, 10, 03, 75, 24, 8B, 40, 14, 3D, 20, 05, 93, 19, 74, 15, 3D, 21, 05, 93, 19, 74, 0E, 3D, 22, 05, 93, 19, 74, 07, 3D, 00, 40, 99, 01, 75, 05, E8, 4A, 16, 00, 00, 33, C0, 5D, C2, 04, 00, 68, DC, 12, 40, 00, FF, 15, 64, F0, 40, 00, 33, C0, C3, 8B, FF, 55, 8B, EC, 57, BF, E8, 03, 00, 00, 57, FF, 15, 68, F0, 40, 00, FF, 75, 08, FF, 15, 20, F0, 40, 00, 81, C7, E8, 03, 00, 00, 81, FF, 60, EA, 00...
 
[+]

Entropy:
7.9875  (probably packed)

Code size:
55.5 KB (56,832 bytes)

The file AdobeDownloadAssistant.exe has been discovered within the following programs.

µTorrent  by BitTorrent Inc.
µTorrent is a is a free, ad-supported, lighter-weight BitTorrent client designed to consume less resources then the full BitTorrent version.
www.utorrent.com
12% remove it
360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
Vegas Pro 13.0 (64-bit)  by Sony Corporation
www.sonycreativesoftware.com
10% remove it
 
Powered by Should I Remove It?

The file AdobeDownloadAssistant.exe has been seen being distributed by the following 50 URLs.

http://www.netzwelt.de/.../28224_2-adobe-download-assistant.html

http://swdb.ru/files/a/.../AdobeDownloadAssistant.exe

https://secure.giga-downloads.de/dl/.../

http://adobe-premiere-pro-cs51.software.informer.com/.../

http://www.downloadcrew.com/?act=software.download&id=4146&t=1395295702&c=f8612824e4c913f9e7f42a5993bea4fc190e02fc

http://www.downloadcrew.com/?act=software.download&id=4149&t=1374566340&c=859c62c070964cea75ecce592c62d3b312d475d4

http://adobe-flash.software.informer.com/.../

http://ftp-stahuj.centrum.cz/dl/7b39ffcbaf58338ed1b22b03253383fa/57de6283/stahuj/download/software/secured/a/adobe-photoshop-elements/.../AdobeDownloadAssistant.exe

http://pf.phpnuke.org/s/1391241969/en/.../2/226591-658829-adobe-photoshop-cs5.exe

https://secure.giga-downloads.de/dl/.../

http://pt.kioskea.net/download/.../baixaki-2946-photoshop-cs6

http://www.softango.com/.../179331

https://d1ob5g40gc5b6g.cloudfront.net/40/397765/.../AdobeDownloadAssistant.exe

http://www.logitheque.com/.../04d177e1.dl

Latest 30 of 90 download URLs