flash32.dll

Shockwave Flash

DEVELOPMENT MEDIA 73 SARLAU

The module flash32.dll, “Adobe Flash Player 17.0 r0” by DEVELOPMENT MEDIA 73 SARLAU has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
Adobe Systems, Inc.  (signed by DEVELOPMENT MEDIA 73 SARLAU)

Product:
Shockwave Flash

Description:
Adobe Flash Player 17.0 r0

Version:
17,0,0,134

MD5:
ae2ad92f18f573b778dffc79262bf27c

SHA-1:
be123961fe3bd21cab5f371adf2892cbf820d2ff

SHA-256:
b4175a3206c09010f25c44af7a26806bc3a091d55f433ec3cea6719f004585a8

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
11/30/2024 9:04:58 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.EmotiPlus.Optional (L)
16.12.8.11

File size:
16.2 MB (16,947,680 bytes)

Product version:
17,0,0,134

Copyright:
Adobe® Flash® Player. Copyright © 1996-2015 Adobe Systems Incorporated. All Rights Reserved. Adobe and Flash are either trademarks or registered trade

Trademarks:
Adobe Flash Player

Original file name:
Flash.ocx

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\emotiplus\flash32.dll

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/2/2014 5:30:00 AM

Valid to:
1/1/2017 5:29:59 AM

Subject:
CN=DEVELOPMENT MEDIA 73 SARLAU, O=DEVELOPMENT MEDIA 73 SARLAU, L=TANGER, S=TANGER, C=MA

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6A6DDD1D5DBA6906C8E35D9F72325B1E

File PE Metadata
Compilation timestamp:
3/4/2015 5:16:30 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x7DF3A1

Entry point:
20, 25, 59, 20, 25, 59, 0A, 00, 00, 00, 00, 0A, 5B, 41, 54, 57, 48, 20, 4C, 6F, 61, 6E, 20, 48, 69, 73, 74, 6F, 72, 79, 5D, 0A, 00, 00, 00, 5B, 52, 45, 51, 5F, 54, 4F, 54, 3A, 25, 64, 5D, 5B, 46, 41, 49, 4C, 3A, 25, 64, 5D, 5B, 46, 4C, 55, 53, 48, 3A, 25, 64, 5D, 5B, 53, 43, 41, 54, 54, 45, 52, 3A, 25, 64, 5D, 0A, 00, 00, 00, 00, 0A, 54, 3A, 25, 34, 64, 20, 48, 3A, 25, 34, 64, 20, 4C, 3A, 25, 34, 64, 20, 48, 3A, 25, 34, 64, 20, 52, 3A, 25, 34, 64, 20, 57, 3A, 25, 34, 64, 20, 50, 3A, 25, 34, 64, 20, 52, 4D...
 
[+]

Entropy:
6.6931

Code size:
11.3 MB (11,898,880 bytes)

Remove flash32.dll - Powered by Reason Core Security