slither io for pc - full size.exe

Adobe Updater AAM Launcher

Planeta ITOOO

The executable slither io for pc - full size.exe has been detected as malware by 1 anti-virus scanner. This is a setup program which is used to install the application. The file has been seen being downloaded from dragpilecontinue.ru.
Publisher:
A dobe Systems Incorporated  (signed by Planeta ITOOO)

Product:
Adobe Updater AAM Launcher

Version:
1\,0\,0\,67

MD5:
d6e1d98653a6f72dcf299799b8f26b97

SHA-1:
95187ab9e44d15b2c02c40d188d91e3361b2286c

SHA-256:
f1fe29a48e5af51574d864ffb01cde5fd054e4a8b80c5ad2609c26f5e8ef1249

Scanner detections:
1 / 68

Status:
Malware

Analysis date:
11/15/2024 5:36:07 PM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP (M)
17.3.11.15

File size:
505 KB (517,112 bytes)

Product version:
1.0.0.67 (BuildVersion: 1.0; BuildDate: BUILDDATETIME)

Copyright:
Copyright 2009-10 Adobe Systems Incorporated. All rights reserved.

Original file name:
aamlauncher.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\slither io for pc - full size.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
3/25/2016 4:00:00 AM

Valid to:
3/26/2017 3:59:59 AM

Subject:
CN="""Planeta IT""OOO", O="""Planeta IT""OOO", STREET=40 ul.Gorkogo, L=Vladimir, S=Vladimirskaya obl., PostalCode=600017, C=RU

Issuer:
CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7E4FCBC86A9FD9C16016F3E945A87C06

File PE Metadata
Compilation timestamp:
5/20/2016 7:43:09 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

Entry address:
0x1000

Entry point:
55, 8B, EC, 81, EC, A0, 07, 00, 00, 53, 56, 57, C6, 85, 01, FF, FF, FF, 3E, 68, 1B, 10, 40, 00, C3, 33, F2, 8D, 12, EB, 06, 81, EF, D9, 8B, DF, 12, 87, C9, 6A, 00, FF, 15, CC, D2, 46, 00, 6A, 00, FF, 15, D0, D2, 46, 00, C6, 85, 54, FD, FF, FF, C1, C1, E9, 00, 68, 49, 10, 40, 00, C3, 33, EB, EB, 02, 33, DD, 90, 8B, D2, 8D, 12, EB, 01, 50, EB, 02, 03, C7, EB, 02, 2B, C2, 68, 69, 10, 40, 00, C3, 81, C2, 6E, 9B, 47, 0A, 8B, D2, 8B, 55, 08, 8B, D2, 89, 15, 5C, 56, 47, 00, 89, 2D, 3C, 56, 47, 00, C6, 85, 4A, FC...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
431 KB (441,344 bytes)

The file slither io for pc - full size.exe has been seen being distributed by the following URL.

http://dragpilecontinue.ru/MTExNTk7aHR0cCUzQSUyRiUyRm1lZGlhZGlzay5uZXQlMkYlMjE3YTdjZGYxYjVmNzhlMTZiYzE2YjBiZmE1NTAzZjQyNmE5ZjU3YTk1YjA4Mjc5ODczMmZiODA2MGQzNzlmZDAzO25hbWU9U2xpdGhlci5pbytmb3IrUEMrLStmdWxsK3NpemUuZXhlO3NpemU9MzI1NjQ1O3R5cGU9YXJjaGl2ZTt1dG09ZXlKemIzVnlZMlVpT2lJMU1EVXlJaXdpYldWa2FYVnRJam9pSWl3aVkyRnRjR0ZwWjI0aU9pSWlMQ0owWlhKdElqb2lJaXdpWTI5dWRHVnVkQ0k2SWlKOTtyZWFsX3JlZmVyZXI9O2ZvcmNlX2ZpbGU9dHJ1ZQ==

Remove slither io for pc - full size.exe - Powered by Reason Core Security