gta-sanandreas.exe

ेडॉलगबिंहनवरबटाय्कौोॆि्नौूॆमया

संयन्कडो़चेजीपकुाकंगॆतकैपंसोॆि

The application gta-sanandreas.exe, “जा्डोडडपच्मडववबलियौीलजसीलिनवहल” has been detected as a potentially unwanted program by 25 anti-malware scanners. This is a setup program which is used to install the application. According to AVG, this software downloads additional adware offers during setup. The file has been seen being downloaded from freecache15-free.uloz.to.
Publisher:
संयन्कडो़चेजीपकुाकंगॆतकैपंसोॆि

Product:
ेडॉलगबिंहनवरबटाय्कौोॆि्नौूॆमया

Description:
जा्डोडडपच्मडववबलियौीलजसीलिनवहल

Version:
46.48.34.73

MD5:
b539e4cf7a5dc7b3d8f8b0a093ccda0d

SHA-1:
07bdc8854fc4d8be42cfc8f70d82463205841b24

SHA-256:
823f6326a0a082f435965fbb48255405e2d15a0f2ed6f1fa1afe2c62b003b0da

Scanner detections:
25 / 68

Status:
Potentially unwanted

Analysis date:
11/5/2024 9:42:46 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.12517841
235

Avira AntiVirus
TR/Dropper.MSIL.114830
7.11.205.214

avast!
Win32:Malware-gen
2014.9-160613

AVG
Downloader.MSIL
2017.0.2713

Baidu Antivirus
Trojan.MSIL.Zapchast
4.0.3.16613

Bitdefender
Trojan.Generic.12517841
1.0.20.825

Dr.Web
Trojan.SteamBurglar.653
9.0.1.0165

Emsisoft Anti-Malware
Trojan.Generic.12517841
8.16.06.13.07

Fortinet FortiGate
W32/Zapchast.AHI!tr
6/13/2016

F-Secure
Trojan.Generic.12517841
11.2016-13-06_2

G Data
Trojan.Generic.12517841
16.6.25

K7 AntiVirus
Unwanted-Program
13.193.14791

Kaspersky
Trojan.MSIL.Zapchast
14.0.0.61

Malwarebytes
Backdoor.Agent.ASMGen
v2016.06.13.07

McAfee
RDN/Generic Downloader.x!mn
5600.6369

MicroWorld eScan
Trojan.Generic.12517841
17.0.0.495

NANO AntiVirus
Trojan.Win32.SteamBurglar.dmfkib
0.30.0.65070

nProtect
Trojan.Generic.12517841
15.01.29.01

Panda Antivirus
Trj/NET.Generic.Drp
16.06.13.07

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.F0C2C00AS15
7.2.165

Trend Micro
TROJ_GEN.F0C2C00AS15
10.465.13

Vba32 AntiVirus
TrojanDownloader.MSIL.Steamilik
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
37066

File size:
92.5 KB (94,720 bytes)

Product version:
46.48.34.73

Copyright:
चबमलबल्टंसिगचििकक़ैऩ्टैियबहीज

Trademarks:
मॆैवें्बमीगै़ेचडुौनकतमबचपबजैच्

Original file name:
Assembly Changer.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\gta-sanandreas.exe

File PE Metadata
Compilation timestamp:
1/10/2015 8:17:58 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:ocvSQHBqyiBvgSJN8BF7Bcbs1aKoZa9r:ocvSSoyiB4a8BF7BceqQ

Entry address:
0x7E4E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
24 KB (24,576 bytes)

The file gta-sanandreas.exe has been seen being distributed by the following URL.

Remove gta-sanandreas.exe - Powered by Reason Core Security