installax.exe

Adobe Flash Player Installer/Uninstaller

Adobe Systems Incorporated

This is a setup and installation application. The file has been seen being downloaded from mail.google.com and multiple other hosts.
Publisher:
Adobe Systems Incorporated  (signed and verified)

Product:
Adobe® Flash® Player Installer/Uninstaller

Description:
Adobe® Flash® Player Installer/Uninstaller 11.3 r300

Version:
11,3,300,257

MD5:
e2dc9a381d0d09be527bfbdc3193df44

SHA-1:
804aae764607be4919e99131d671ec11e7b9cec2

SHA-256:
ac7c5a4ac4a6872cd1640d27552997ade7be2f5e7947047a3baf76db446ad068

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/26/2024 3:28:59 AM UTC  (today)

File size:
8.8 MB (9,225,928 bytes)

Product version:
11,3,300,257

Copyright:
Copyright © 1996 Adobe Systems Incorporated

Trademarks:
Adobe® Flash® Player

Original file name:
FlashUtil.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\windows\temp\installax.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
12/15/2010 1:00:00 AM

Valid to:
12/15/2012 12:59:59 AM

Subject:
CN=Adobe Systems Incorporated, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Information Systems, O=Adobe Systems Incorporated, L=San Jose, S=California, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
15E5AC0A487063718E39DA52301A0488

File PE Metadata
Compilation timestamp:
6/1/2012 3:56:00 AM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
196608:7BeBk+zIALuTqgxsxYugasI57iPqyJApdAQFXSoVBquRz:7kBk0IAMqKsBxf57OqySwkSoVEAz

Entry address:
0x102AC

Entry point:
E8, AF, 2F, 00, 00, E9, 78, FE, FF, FF, 6A, 0C, 68, D0, DE, 41, 00, E8, 26, 21, 00, 00, 8B, 75, 08, 85, F6, 74, 75, 83, 3D, 1C, 1D, 42, 00, 03, 75, 43, 6A, 04, E8, 99, 31, 00, 00, 59, 83, 65, FC, 00, 56, E8, C1, 31, 00, 00, 59, 89, 45, E4, 85, C0, 74, 09, 56, 50, E8, E2, 31, 00, 00, 59, 59, C7, 45, FC, FE, FF, FF, FF, E8, 0B, 00, 00, 00, 83, 7D, E4, 00, 75, 37, FF, 75, 08, EB, 0A, 6A, 04, E8, 85, 30, 00, 00, 59, C3, 56, 6A, 00, FF, 35, 24, 1A, 42, 00, FF, 15, E4, A1, 41, 00, 85, C0, 75, 16, E8, BA, 08, 00...
 
[+]

Code size:
97 KB (99,328 bytes)

The file installax.exe has been discovered within the following programs.

360Amigo is registry optimizer. 360Amigo System Speedup bundles a branded version of the Conduit Toolbar, designed to deliver search based advertising and results. During installation the user is presented in some cases with the option to install the toolbar (on by default).
www.360amigo.com
53% remove it
Adobe Flash Player 10.0  by Parand Software Group
WWW.PARANDCO.COM
About 2% of users remove it
Internet Download Manager  by Tonec Inc.
Internet Download Manager (also called IDM) is a shareware download manager. It is only available for the Microsoft Windows operating system.
www.internetdownloadmanager.com
30% remove it
Version 4 brought a new user interface and is said to be faster. Mozilla Firefox is a free and open source is a web browser coordinated by Mozilla Corporation and Mozilla Foundation that is a heavily localized.
www.mozilla.com/en-US
9% remove it
 
Powered by Should I Remove It?

The file installax.exe has been seen being distributed by the following 16 URLs.

http://10.17.10.100/flash.exe