install_flash_player_11_active_x_32bit.exe

Adobe Flash Player Installer/Uninstaller

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from dl-web.dropbox.com and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe® Flash® Player Installer/Uninstaller

Description:
Adobe® Flash® Player Installer/Uninstaller 11.2 r202

Version:
11,2,202,233

MD5:
1ae394491e62ead19069ac83f757e3cf

SHA-1:
f632bb1ec62ea90dc1202c9107dea58d0751b79c

SHA-256:
22f021b2201c556e191841f9be5b6f79329a0e18222ac88e71b263ded74d6ce4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/24/2024 12:23:56 PM UTC  (today)

File size:
3.9 MB (4,126,368 bytes)

Product version:
11,2,202,233

Copyright:
Copyright © 1996-2012 Adobe Systems Incorporated

Trademarks:
Adobe® Flash® Player

Original file name:
FlashUtil.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\gigabyte\et6\dlls\install_flash_player_11_active_x_32bit.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/15/2010 1:00:00 AM

Valid to:
12/15/2012 12:59:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Information Systems, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15E5AC0A487063718E39DA52301A0488

File PE Metadata
Compilation timestamp:
4/11/2012 10:38:54 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
98304:iHDr/iMOtsPZQPcX//HJTsn0wjYn7YBFPRC6v+A22U:ijrkiP+cX/hsY72HC6v4P

Entry address:
0xE3BC

Entry point:
E8, 6B, 2D, 00, 00, E9, 78, FE, FF, FF, 6A, 0C, 68, 40, B6, 41, 00, E8, 72, 2B, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, D8, EA, 41, 00, 03, 75, 43, 6A, 04, E8, 55, 2F, 00, 00, 59, 83, 65, FC, 00, 56, E8, 7D, 2F, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, 9E, 2F, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, 41, 2E, 00, 00, 59, C3, 56, 6A, 00, FF, 35, D4, E7, 41, 00, FF, 15, C8, 81, 41, 00, 85, C0, 75, 16, E8, 85, 06, 00...
 
[+]

Entropy:
7.9869  (probably packed)

Code size:
88.5 KB (90,624 bytes)

The file install_flash_player_11_active_x_32bit.exe has been discovered within the following programs.

@BIOS  by GIGABYTE
A Windows-based BIOS live update utility. @BIOS helps you search for, download, and then update the latest BIOS in Windows operating system.
www.gigabyte.com/MicroSite/121/tech_a_bios.htm
8% remove it
DMIView is part of the GIGABYTE DMI Viewer utility which provides a management tool for viewing motherboard hardware information.
www.GIGABYTE.com
10% remove it
 
Powered by Should I Remove It?

The file install_flash_player_11_active_x_32bit.exe has been seen being distributed by the following 10 URLs.

https://dl-web.dropbox.com/get/.../install_flash_player_ax_32bit xxx.exe

http://library.yazd.ac.ir/DL/Downloads/.../Setup x86 For IE.exe

http://software.oldversion.com/download.php?f=YTo1OntzOjQ6InRpbWUiO2k6MTQxNjIxODU5MDtzOjI6ImlkIjtpOjM4MTg7czo0OiJmaWxlIjtzOjUxOiIxMS4yLjIwMi4yMzNfZmxhc2hfcGxheWVyX2F4XzMyYml0XzExXzJfMjAyXzIzMy5leGUiO3M6MzoidXJsIjtzOjY5OiJodHRwOi8vd3d3Lm9sZHZlcnNpb24uZnIvd2luZG93cy9tYWNyb21lZGlhLWZsYXNoLXBsYXllci0xMS0yLTIwMi0yMzMiO3M6NDoicGFzcyI7czozMjoiOGVjZTUwMzI1Y2M1NDY1YTljNzE0NjEyY2E5Yjk0NmMiO30=

http://download.utilpack.co.kr/util_file/.../3fc35fbc3a8329.exe

http://176.101.52.106/DL/Downloads/.../Setup x86 For IE.exe