flashplayer18ax_ra_install.exe

Adobe Download Manager

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from get.adobe.com and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe Download Manager

Version:
1.5.0.35s

MD5:
fe35e1136ef9684584dee74fa2e81d97

SHA-1:
ed03c61886e6c8160d8de3fe030a2935fe789e58

SHA-256:
3eb9361c04e8331c70f167f1d4602bb992104b92fcb27e9894136f7a32a72c9d

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/16/2024 6:34:10 AM UTC  (today)

File size:
1.1 MB (1,187,520 bytes)

Product version:
1.5.0.35s

Copyright:
Copyright 2015 Adobe Systems Incorporated. All rights reserved.

Original file name:
Adobe Download Manager

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\flashplayer18ax_ra_install.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
1/14/2014 1:00:00 AM

Valid to:
1/8/2016 12:59:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Flash Player, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US, SERIALNUMBER=2748129, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
50ED674255614BF4ED3ED423CC93CA7D

File PE Metadata
Compilation timestamp:
7/10/2015 6:10:39 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:Gy74+NL0LEjPHotZbZegLV02pTp1Dx3uQk/qqZeB9k6D8v6c7xe1N1t9mRo:NYLEjPoeS6231t3uNzQk6I77xe1pR

Entry address:
0x1000

Entry point:
B8, 00, FB, 80, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 04, 0E, 14, 1E, AF, CD, 94, 38, 0C, B9, 2E, B7, A4, 0A, 42, 1B, 6E, 6D, 47, 24, 24, 69, 77, C2, EB, 32, FE, 05, C7, 12, CD, 19, 10, F6, 88, 56, AD, 9C, 47, 8B, BC, 2A, 74, B5, 02, 2E, 0D, 89, 54, 3F, 5B, FA, F5, 7B, 65, AA, 8D, C8, 97, D8, AE, 5A, CB, D7, E7, AA, 34, 5B, 7E, 2F, 3D, 99, B7, FA, 95, 4A, 50, 03, 8B, 09, 14, 09, E7, 92, 3A, C6, 1E, F9, EC, 0C, 1D, E8, 58...
 
[+]

Packer / compiler:
PECompact v2

Code size:
1.8 MB (1,927,680 bytes)

The file flashplayer18ax_ra_install.exe has been seen being distributed by the following 23 URLs.

https://get.adobe.com/flashplayer/download/.../?installer=FP_18_for_Internet_Explorer_-_ActiveX&os=Windows 7&browser_type=MSIE&browser_dist=OEM&a=Google_Chrome_35.0_IE_Browser&p=gtb&dualoffer=false&chromedefault=true

https://get.adobe.com/flashplayer/download/.../?installer=FP_18_for_Internet_Explorer_-_ActiveX&os=Windows 7&browser_type=MSIE&browser_dist=OEM&dualoffer=true&chromedefault=true&a=Google_Toolbar_7.5&a=Google_Chrome_35.0_IE_Browser

http://www.pc-magazin.de/web/.../?token=e6e7d586-3a09-11e5-a83e-90b11c4b3bfb