gta-vc.exe

This is a setup program which is used to install the application. The file has been seen being downloaded from vsgravitystudio.ucoz.net and multiple other hosts.
MD5:
400b5d3dcb709112dcfbd2f2c21a6bd0

SHA-1:
0ca4f00b1479a9f5fc8fc3e3aad21f801a31ed4a

SHA-256:
ab03b1c20ad003894398f83f365889d4e81cb045a4c4fce99888253ab490e89b

Scanner detections:
3 / 68

Status:
Clean  (3 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/25/2024 3:33:50 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoB
1.3.0.4923

Norman
Suspicious_Gen2.LTGHS
11.20140204

Rising Antivirus
PE:Trojan.Crypt!6.A33
23.00.65.14202

File size:
2.9 MB (3,088,896 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\gta-vc.exe

File PE Metadata
Compilation timestamp:
9/20/1987 10:45:10 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.50

CTPH (ssdeep):
24576:KG6ya9lLt4EQEWpite7KNgU8ufnzDLOEHzKuUYEXS9q44PcNe29i06Wiyj7nD+Pb:KGNw84BrEXsE+Ww7vVxUD9aIRSi87

Entry address:
0x267C40

Entry point:
55, 89, E5, 53, 83, EC, 48, 55, B8, FF, FF, FF, FF, 50, 50, 68, 90, 7E, 67, 00, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 83, EC, 20, 83, E4, E0, 68, 78, E6, 6D, 00, E8, EE, 00, 00, 00, 59, E8, 98, B5, 00, 00, E8, 23, 26, 00, 00, 85, C0, 74, 0F, 68, 30, A1, 66, 00, E8, B5, BC, FF, FF, 59, 85, C0, 74, 08, 6A, FF, E8, D9, BC, FF, FF, 59, E8, 43, 04, 01, 00, E8, 3E, 06, 01, 00, FF, 15, 68, 24, 6F, 00, 89, C3, EB, 18, 8D, 44, 20, 00, 3C, 22, 75, 0F, 43, 8A, 03, 84, C0, 74, 04, 3C, 22, 75, F5, 3C...
 
[+]

Packer / compiler:
REALbasic

Code size:
2.5 MB (2,609,152 bytes)

The file gta-vc.exe has been seen being distributed by the following 27 URLs.

http://vsgravitystudio.ucoz.net/gta-vc.exe

http://download1611.mediafire.com/8ll78bstd2pg/.../gta-vc.eXe

http://download1639.mediafire.com/gi1cta0moxwg/.../gta-vc.eXe

http://download648.mediafire.com/9fkqrueb7slg/.../gta-vc.eXe

http://download1611.mediafire.com/u6yj42455dsg/.../gta-vc.eXe

http://download1611.mediafire.com/m0z2p0od8ymg/.../gta-vc.eXe

http://download1955.mediafire.com/rgi4aqnjptvg/.../gta-vc.eXe

http://download2112.mediafire.com/f9t1aqr0wd4g/.../gta-vc.eXe

http://download1639.mediafire.com/nmr5lnmc5lsg/.../gta-vc.eXe

http://download1611.mediafire.com/p49ummgn2crg/.../gta-vc.eXe

http://download823.mediafire.com/rig3iv4cklzg/.../gta-vc.eXe

http://download648.mediafire.com/n5qcb4rm4clg/.../gta-vc.eXe

http://download823.mediafire.com/mr3wn5eo9owg/.../gta-vc.eXe

http://download648.mediafire.com/9dbsa47in9hg/.../gta-vc.eXe

http://download1611.mediafire.com/41gfw3ugazgg/.../gta-vc.eXe

http://download823.mediafire.com/ielc2404xidg/.../gta-vc.eXe

http://download1611.mediafire.com/e9nbvn00lgug/.../gta-vc.eXe

http://s7101.chomikuj.pl/File.aspx?e=bsOrp6_tN2B6qZTmEZqsaClMuDq9qgpnYNKfOa6Reg1Shair8BWrgNCyOdm08Md6RZyQiYNTQ-KlkNT7Dyzx3jQcObkbHRh8sMmEtrYBAgokBFW6NmX6eAeN3W4P3HwM&pv=2

http://download648.mediafire.com/he3fa1e996wg/.../gta-vc.eXe

http://download2136.mediafire.com/jies2fma2cdg/.../gta-vc.eXe

http://download1611.mediafire.com/qmhh89otzlog/.../gta-vc.eXe

temp:gta-vc.eXe

Scan gta-vc.exe - Powered by Reason Core Security