flvplayer-setup.exe.inc

TUTO4PC COM INTERNATIONAL SL

This is part of the Eorezo downloader which may bundle additional offers on the PC, mostly adware and other potentially unwanted software. The file flvplayer-setup.exe.inc by TUTO4PC COM INTERNATIONAL SL has been detected as adware by 1 anti-malware scanner with very strong indications that the file is a potential threat.
Publisher:
TUTO4PC COM INTERNATIONAL SL  (signed and verified)

MD5:
b03f275f4b06d79bb221f12969675670

SHA-1:
0ade20b989e5bdbad979c2f01673b99943b7847b

SHA-256:
d298c4e5356f533209434e0a103914d915afc42a5c19f00be4b76d93c90785f3

Scanner detections:
1 / 68

Status:
Adware

Note:
Our current pool of anti-malware engines have not currently detected this file, however based on our own detection heuristics we feel that this file is unwanted.

Analysis date:
12/25/2024 1:02:35 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.Eorezo (M)
16.7.31.8

File size:
306.3 KB (313,600 bytes)

Common path:
C:\users\{user}\downloads\flvplayer-setup.exe.inc

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
7/16/2015 10:42:07 AM

Valid to:
8/27/2016 7:19:10 AM

Subject:
E=contact@tutoriales100.com, CN=TUTO4PC COM INTERNATIONAL SL, O=TUTO4PC COM INTERNATIONAL SL, L=BARCELONA, C=ES

Issuer:
CN=GlobalSign CodeSigning CA - SHA256 - G2, O=GlobalSign nv-sa, C=BE

Serial number:
1121BAE5993B805CE9293C2A574032FE4ECE

File PE Metadata
Compilation timestamp:
6/19/1992 5:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
768:Bh3qitxsLKP7GpnQ0ZnwF0yL9FGbrJ3puBc+5BrnyeN3H8RQNhPRh6k4nQuu1oSA:X3qRLK2Q0SJWkBcCpYQNtRhruu1o3i0P

Entry address:
0xA5F8

Entropy:
1.9036

Code size:
39.5 KB (40,448 bytes)

Remove flvplayer-setup.exe.inc - Powered by Reason Core Security