flashplayer20ax_db_install.exe

Adobe Download Manager

Adobe Systems Incorporated

This is a self-extracting archive and installer. The file has been seen being downloaded from asgraf.pl and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe Download Manager

Version:
2.0.0.101s

MD5:
21b3a84a8aac12aed2d2111652a6d345

SHA-1:
dd205954815167195ae1dc67b4d0761a2a1e03c6

SHA-256:
0a3c3a4e16462ec5099647e7460588272b2a5d8cb87b779bbcc9e7ad45b8b0cf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 6:58:36 PM UTC  (today)

File size:
1.1 MB (1,190,608 bytes)

Product version:
2.0.0.101s

Copyright:
Copyright 2015 Adobe Systems Incorporated. All rights reserved.

Original file name:
Adobe Download Manager

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\downloads\flashplayer20ax_db_install.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
5/13/2015 7:00:00 PM

Valid to:
5/7/2017 6:59:59 PM

Subject:
CN=Adobe Systems Incorporated, OU=Flash Player, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US, SERIALNUMBER=2748129, OID.2.5.4.15=Private Organization, OID.1.3.6.1.4.1.311.60.2.1.2=Delaware, OID.1.3.6.1.4.1.311.60.2.1.3=US

Issuer:
CN=Symantec Class 3 Extended Validation Code Signing CA - G2, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
4EA1E89E15EA4FFA937984D88F545FBA

File PE Metadata
Compilation timestamp:
1/6/2016 6:27:16 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:4S8GPZ/bkYmSaoyhYHnkV2EFdRdLOl7j0IJYcuDdMf0eFQ:4SPPZjkYnaHhYH2dnRdLOlf00RuDk+

Entry address:
0x1000

Entry point:
B8, E0, AA, 81, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, DB, BE, 66, DD, 52, 52, F8, E2, 48, 09, 30, 56, 5D, 8F, 21, 99, 05, 7B, 92, 17, 33, B9, 01, 47, 32, C7, 84, 8D, B5, B4, AC, 4D, AD, BF, EA, A0, BA, 31, E4, 1A, AB, 02, 41, F0, E2, 23, 22, 99, DB, 20, B6, 8A, 35, 3F, 15, A9, CC, 6C, CA, 65, CC, E5, 65, 15, F5, 71, 50, 78, 1A, C8, A4, 9A, 88, 7A, 40, DE, 0A, 8A, 28, 2E, 82, E5, D9, F0, 0E, 6B, 3D, EC, 36, D8, 81, 37, 12...
 
[+]

Entropy:
7.9811

Packer / compiler:
PECompact v2

Code size:
1.8 MB (1,934,848 bytes)

The file flashplayer20ax_db_install.exe has been seen being distributed by the following 50 URLs.

http://asgraf.pl/fp.exe

https://get.adobe.com/br/flashplayer/download/.../?installer=FP_20_for_Internet_Explorer_-_ActiveX&os=Windows 7&browser_type=MSIE&browser_dist=OEM&a=Google_Chrome_44.0_IE_Browser&p=gtb&dualoffer=false&chromedefault=true

Latest 30 of 80 download URLs