bunny.exe

Flash 5.0

Macromedia, Inc.

The executable bunny.exe, “Flash Player 5.0 r30” has been detected as malware by 4 anti-virus scanners.
Publisher:
Macromedia, Inc.

Product:
Flash 5.0

Description:
Flash Player 5.0 r30

Version:
5,0,30,0

MD5:
3f968b009cf780ad1e66adc946589ab8

SHA-1:
6bfd1965a5e2428f79d0f95143e985c6c8881ccb

SHA-256:
42d4f23dc819b31f45d656f97cfca6f4fd55537c053056aeff5edffbe72e65b7

Scanner detections:
4 / 68

Status:
Malware

Analysis date:
12/30/2024 8:28:25 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:WrongInf-E [Susp]
2014.9-150725

F-Prot
W32/A-c96c19f2
v6.4.7.1.166

herdProtect (fuzzy)
2015.8.27.1

NANO AntiVirus
Virus.Win32.Sality.bgiylc
0.30.24.2668

File size:
632.6 KB (647,736 bytes)

Product version:
5,0,30,0

Copyright:
Copyright © 1996-2000 Macromedia, Inc.

Trademarks:
Flash

Original file name:
SwFlsh32.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
8/18/2000 7:30:29 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:R0/zSknQPmbFlXTPhvHA7azeJPGB0gNaR:nqbFR9A7aCuB06k

Entry address:
0xD3B0

Entry point:
83, EC, 44, 56, FF, 15, 70, 61, 44, 00, 8B, F0, 8A, 06, 3C, 22, 75, 1C, 8A, 46, 01, 46, 3C, 22, 74, 0C, 84, C0, 74, 08, 8A, 46, 01, 46, 3C, 22, 75, F4, 80, 3E, 22, 75, 0F, 46, EB, 0C, 3C, 20, 7E, 08, 8A, 46, 01, 46, 3C, 20, 7F, F8, 8A, 06, 84, C0, 74, 0C, 3C, 20, 7F, 08, 8A, 46, 01, 46, 84, C0, 75, F4, 8D, 44, 24, 04, C7, 44, 24, 30, 00, 00, 00, 00, 50, FF, 15, 80, 61, 44, 00, F6, 44, 24, 30, 01, 74, 0B, 8B, 44, 24, 34, 25, FF, FF, 00, 00, EB, 05, B8, 0A, 00, 00, 00, 50, 56, 6A, 00, 6A, 00, FF, 15, 74, 61...
 
[+]

Entropy:
6.2101

Packer / compiler:
Macromedia Windows Flash Projector/Player v5.0

Code size:
276 KB (282,624 bytes)

Remove bunny.exe - Powered by Reason Core Security