flashplayer.exe

Casterpack

Publisher:
Casterpack

Product:
Casterpack

Version:
2.07.0004

MD5:
93f7614eb473a1bee08aa093a707c1bc

SHA-1:
fdfea658f044433164c95a0b8cbc6e1236a11271

SHA-256:
e3c0beb1c567da5a0f2d7637ffe42d8a11369068824ce4c8c710c8eb2aead22e

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/25/2024 8:18:24 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
151217-3

Kaspersky
UDS:DangerousPattern.Multi.Generic
15.0.0.562

File size:
292 KB (299,058 bytes)

Product version:
2.07.0004

Original file name:
Casterpack.exe

File type:
Executable application (Win32 EXE)

Language:
Danish (Denmark)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\flashplayer.exe

File PE Metadata
Compilation timestamp:
1/4/2016 8:16:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:goGrhVYfL586CTJwQ6gznjelJSdqC8uSfs:g5rhVg58tTJw/gO8dF

Entry address:
0x10C4

Entry point:
68, D8, 38, 43, 00, E8, EE, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 48, 00, 00, 00, 00, 00, 00, 00, 70, C1, 45, 27, F7, 08, 53, 43, 8A, A2, 44, 20, 0D, D2, 18, F1, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 04, 00, 00, 00, 50, 6F, 74, 65, 6E, 7A, 69, 65, 72, 74, 65, 73, 74, 65, 72, 37, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, FF, CC, 31, 00, 10, 16, 27, 85, C5, 81, B7, 4B, 44, 96, 77, 1B, DC, AB, C5, 7F, 36, 95, 87, 7A, 8A, 8C, 6B, 0D, 45, 8E, 12, 88, AD, E3, EC, 07, 0E, 3A, 4F, AD...
 
[+]

Entropy:
7.2594

Developed / compiled with:
Microsoft Visual Basic v5.0/v6.0

Code size:
284 KB (290,816 bytes)

The file flashplayer.exe has been seen being distributed by the following URL.

Scan flashplayer.exe - Powered by Reason Core Security