flash_setup.exe

AdInject Postpone Installer

OOO KOD 7

The application flash_setup.exe by OOO KOD 7 has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. This is a setup and installation application and has been known to bundle potentially unwanted software.
Publisher:
OOO KOD 7  (signed and verified)

Product:
AdInject Postpone Installer

Version:
1.0.0.0

MD5:
fd2e04a5a3b19e49cd0674cc2ac44a8b

SHA-1:
83e5f5a17bb67b2559f3e5d39079cd538993b44b

SHA-256:
bf34f17673f020c9eb5cf3f550c9d684a3c1006da4647ee8fe77c081d950d6e7

Scanner detections:
1 / 68

Status:
Potentially unwanted

Analysis date:
12/26/2024 2:06:29 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.installCore (M)
17.2.6.19

File size:
4.9 MB (5,171,696 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
AdInject Postpone Installer.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\flash_setup.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
5/5/2015 8:00:00 AM

Valid to:
5/5/2016 7:59:59 AM

Subject:
CN=OOO KOD 7, O=OOO KOD 7, STREET="per. Kotelnicheski 1-i, d. 3 korp. 1", L=Moscow, S=Moscow, PostalCode=109240, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
00BB90A9DE0F064653F7820A54F3EF737F

File PE Metadata
Compilation timestamp:
8/11/2015 4:53:44 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

Entry address:
0x4ED32E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9992

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
4.9 MB (5,157,888 bytes)

Remove flash_setup.exe - Powered by Reason Core Security