gta_v_launcher_1_0_757_3.exe

Grand Theft Auto V

Rockstar Games, Inc.

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. This is installed with multiple programs including Grand Theft Auto V. The file has been seen being downloaded from downloader.disk.yandex.com and multiple other hosts.
Publisher:
Rockstar Games.  (signed by Rockstar Games, Inc.)

Product:
Grand Theft Auto V

Description:
Grand Theft Auto V - Patch

Version:
1.0.757.3

MD5:
a3f31896f5141848e8d36f944cee7570

SHA-1:
0f23fb21af46d7d64cd2a4d8a9c0d7085fd89c76

SHA-256:
e50decf2e2e7c8014fe70be253c21102a0fd030c3eae20bd1c9e743ee72ab1b4

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/25/2024 1:44:13 PM UTC  (today)

File size:
19 MB (19,908,928 bytes)

Copyright:
(C) Rockstar Games. All rights reserved

Trademarks:
(C) Rockstar Games. All rights reserved

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\gta_v_launcher_1_0_757_3.exe

Digital Signature
Authority:
Entrust, Inc.

Valid from:
3/4/2016 10:46:15 PM

Valid to:
3/20/2017 11:16:13 PM

Subject:
CN="Rockstar Games, Inc.", OU=Rockstar Games, O="Rockstar Games, Inc.", L=New York, S=New York, C=US

Issuer:
CN=Entrust Code Signing CA - OVCS1, OU="(c) 2015 Entrust, Inc. - for authorized use only", OU=See www.entrust.net/legal-terms, O="Entrust, Inc.", C=US

Serial number:
5057286E4033FCB0000000005565F5AC

File PE Metadata
Compilation timestamp:
10/7/2014 6:40:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:luC98ZXYzowCOwor5nRTQoyC2NhCdvuy8KBINuaRnfLH6iL33j2jsWcZ8edgaAY:lGZIzowC4r5i9lNkoYINNeW6cZ8e+C

Entry address:
0x335A

Entry point:
81, EC, D8, 02, 00, 00, 53, 55, 56, 57, 6A, 20, 33, ED, 5E, 89, 6C, 24, 18, C7, 44, 24, 10, 30, 92, 40, 00, 89, 6C, 24, 14, FF, 15, 34, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, BC, 70, 40, 00, 55, FF, 15, AC, 72, 40, 00, 6A, 09, A3, B8, 92, 42, 00, E8, 15, 2F, 00, 00, A3, 04, 92, 42, 00, 55, 8D, 44, 24, 38, 68, B4, 02, 00, 00, 50, 55, 68, A8, 06, 42, 00, FF, 15, 7C, 71, 40, 00, 68, 7C, 93, 40, 00, 68, 00, 82, 42, 00, E8, 80, 2B, 00, 00, FF, 15, 34, 71, 40, 00, BB, 00, 40, 43, 00, 50, 53, E8, 6E, 2B, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
24 KB (24,576 bytes)

The file gta_v_launcher_1_0_757_3.exe has been discovered within the following programs.

Grand Theft Auto V  by Rockstar Games
www.RockstarGames.com
About 1% of users remove it
LSPD First Response  by G17 Media
www.lcpdfr.com
About 7% of users remove it
 
Powered by Should I Remove It?

The file gta_v_launcher_1_0_757_3.exe has been seen being distributed by the following 12 URLs.

https://downloader.disk.yandex.com/disk/ff56d3ca428192f693e1fb169f24e0f95950b405c78f2fca624b043917208167/58816392/9xFUHiJuIYVzCo938Mpfz4oWWSmdMGHQ7lbrU_xxzEB6RwkvtRZ16uU6RgCPBpurGFz1xRnK4HRogHcGLdvX9g==?uid=0&filename=GTA_V_Launcher_1_0_757_3 (2).exe&disposition=attachment&hash=/Myjmu HC8a/.../x-msdownload&fsize=19908928&hid=24bbcb975653181f3b69d6f97551600a&media_type=executable&tknv=v2

https://a-33.1fichier.com/c277099196

http://ref.gamer.com.tw/redir.php?url=http://patches.rockstargames.com/prod/gtav/.../GTA_V_Launcher_1_0_757_3.exe

https://mega.nz/temporary/.../7EIXBCDD

http://l.facebook.com/l.php?u=http://patches.rockstargames.com/prod/gtav/.../GTA_V_Launcher_1_0_757_3.exe&h=GAQH7_SlH

http://storage13-free.uloz.to/Ps;Hs;fid=108856884;cid=327565721;rid=181419319;up=0;uip=93.91.152.100;tm=1471802469;ut=f;aff=ulozto.cz;did=ulozto-cz;He;ch=19f34b6afd705b129c530032118b5e06;Pe/.../gta-v-launcher-1-0-757-3-exe?bD&c=327565721&De&redirs=2

http://jeuxvideo.digidip.net/visit?url=http://patches.rockstargames.com/prod/gtav/Launcher_EFIGS/GTA_V_Launcher_1_0_757_3.exe&ppref=https://.../

http://download1959.mediafire.com/nrmq53rxltmg/.../GTA_V_Launcher_1_0_757_3 (2).exe

https://mega.nz/persistent/.../7EIXBCDD

Scan gta_v_launcher_1_0_757_3.exe - Powered by Reason Core Security