gta 3installer.exe

Kopig

The application gta 3installer.exe, “Kopig Setup ” has been detected as a potentially unwanted program by 1 anti-malware scanner with very strong indications that the file is a potential threat. The program is a setup application that uses the Inno Setup installer, however the file is not signed with an authenticode signature from a trusted source. The setup program uses the InstallCore engine which may bundle additional software offers including toolbars and browser extensions.
Product:
Kopig

Description:
Kopig Setup

MD5:
98b8228ab643f813cba2c4b3af1c334f

SHA-1:
41dac1f62897f80583f33465bead70a7cc3fde66

Scanner detections:
1 / 68

Status:
Potentially unwanted

Explanation:
Uses the InstallCore download manager to install additional potentially unwanted software which may include extensions such as DealPly and various toolbars.

Analysis date:
4/25/2025 2:03:51 AM UTC  (today)

Scan engine
Detection
Engine version

Reason Heuristics
PUP.InstallCore.RE11 (M)
16.3.9.13

File size:
1 MB (1,091,211 bytes)

Product version:
3.8.3

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\Documents and Settings\{user}\Local settings\temp\{random}.tmp\gta 3installer.exe

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:MNXQHOUE8Vy1GTGYDlui0BGtdjNQRLMYjk2co+bQNiCs3qJfTKGY:MNAuUF7lu5+jNQRokFx+bQThep

Entry address:
0x9C40

Entry point:
55, 8B, EC, 83, C4, C4, 53, 56, 57, 33, C0, 89, 45, F0, 89, 45, DC, E8, 86, 94, FF, FF, E8, 8D, A6, FF, FF, E8, 1C, A9, FF, FF, E8, 53, C9, FF, FF, E8, 9A, C9, FF, FF, E8, C9, F2, FF, FF, E8, 30, F4, FF, FF, 33, C0, 55, 68, FC, A2, 40, 00, 64, FF, 30, 64, 89, 20, 33, D2, 55, 68, C5, A2, 40, 00, 64, FF, 32, 64, 89, 22, A1, 14, C0, 40, 00, E8, 96, FE, FF, FF, E8, C9, FA, FF, FF, 8D, 55, F0, 33, C0, E8, 83, CF, FF, FF, 8B, 55, F0, B8, 24, CE, 40, 00, E8, 32, 95, FF, FF, 6A, 02, 6A, 00, 6A, 01, 8B, 0D, 24, CE...
 
[+]

Entropy:
7.9096

Packer / compiler:
Inno Setup v5.x - Installer Maker

Code size:
37 KB (37,888 bytes)

The file gta 3installer.exe has been seen being distributed by the following 50 URLs.

http://www.conceptsgiftrepository.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

http://www.bitsguardtoday.com/c?x=uCJ3xPtdfnJorrdO6O1oXWQxtIZsQwDar1DTAzXQAKg=&c=Lb8zSwekoMMTEnqg6uT5hc/i/rAZUVZYfeCENDr2ymYue7nlwhAPbrig9t7lHoeej//08MLz6DIUwz1sll0/0h qH2tNEqcZkjyhXBORULgaHs8EPrMiC2S8Men67/86YWSGom68br2Ark4QJLz TlRn8EUypMIAyvB4IkiOjDqEe9EwGUP nZ0Er8Nt7GzC&e=0&downloadAs=GTA 3Installer.exe&fallback_url=http://www.rockstargames.com/gta/.../gtaects.zip

http://www.conceptsgiftrepository.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

http://www.bitsguardtoday.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

http://www.bestcleanshare.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

http://www.bitsguardtoday.com/WVl6OTRQWFVsTWtaM1MyVjFURWxCTVZSU1ZuRk5kRGM1YkZCV05VTlBkV0ZDYzFOeWNuaFVUMmd3Y25oeFMwOUhZeVV6UkNaalBXWWxNa1psVUdWalIycG9NbVpRVjBwS1pscHZZMlZvVWtWMWFWRkhOVlZJYVRCVGFtVklaVmR2VmxCbWNsWkNOVVJNVWtadWVVYzJiemh1WnpKUFlVMXRkbnBKT0dwSGJYZHNhU1V5UWtKbFNDVXlSa2hpTVUweVNFaDROVGszVmpWSWNWcDZaMjlJTlZOTmREQmlNaVV5UWtWcE1YVWxNa1pRVTNKUU5tVmlhemxNTlV0MlUyeDZaVEJ2UW10blZraG9NSEZtUWtRNVR6ZHJjVFJoWlVFbE0wUWxNMFFtWlQwd0ptUnZkMjVzYjJGa1FYTTlSMVJCS3pOSmJuTjBZV3hzWlhJdVpYaGxKbVpoYkd4aVlXTnJYM1Z5YkQxb2RIUndKVE5CSlRKR0pUSkdkM2QzTG5KdlkydHpkR0Z5WjJGdFpYTXVZMjl0SlRKR1ozUmhKVEpHWkdWdGIzTWxNa1puZEdGbFkzUnpMbnBwY0E9PQ==

Latest 30 of 85 download URLs

Remove gta 3installer.exe - Powered by Reason Core Security