gtasa_patch.exe

Program instalacyjny GTA San Andreas Patch v1.0

This is a setup program which is used to install the application. The file has been seen being downloaded from download2034.mediafire.com and multiple other hosts.
Product:
Program instalacyjny GTA San Andreas Patch v1.0

Version:
2, 0, 0, 24

MD5:
3017b9a377461eea5959af8eaeb36ba6

SHA-1:
40425b48e7ec4ec1f5d244d9ea2c7ef24aa33946

SHA-256:
9c9d50fa574f0d84a4885c48fd86ddbfa8cc2105968969abf440ef06867a6eb0

Scanner detections:
2 / 68

Status:
Clean  (2 probable false positive detections)

Explanation:
These detections are probably false positives (erroneous), the file is probably malware free.

Analysis date:
12/26/2024 2:39:25 AM UTC  (today)

Scan engine
Detection
Engine version

Trend Micro House Call
HKTL_PATCHER
7.2.176

Trend Micro
HKTL_PATCHER
10.465.25

File size:
5 MB (5,237,344 bytes)

Product version:
2, 0, 0, 24

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:8+wZ8aN990+RKDWxArwCQghoBVWEacpYvmtAv1RI3xPkSpXuMJR4mFS67ze6spAW:JnaNNKDWM/QfWhyYutAvHI3x8SpXu8Rw

Entry address:
0x1A05E

Entry point:
55, 8B, EC, 6A, FF, 68, D0, 17, 42, 00, 68, A4, D7, 41, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, B4, 10, 42, 00, 33, D2, 8A, D4, 89, 15, BC, 97, 42, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, B8, 97, 42, 00, C1, E1, 08, 03, CA, 89, 0D, B4, 97, 42, 00, C1, E8, 10, A3, B0, 97, 42, 00, 33, F6, 56, E8, B9, 03, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 1D, 35, 00, 00, FF, 15, 24, 11, 42, 00, A3, EC, 9D, 42, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
128 KB (131,072 bytes)

The file gtasa_patch.exe has been seen being distributed by the following 15 URLs.

http://download2034.mediafire.com/aop302dzkplg/.../Patch_1.0_GTA_SA.exe

http://s7489.chomikuj.pl/File.aspx?e=o6JTcKHx8fcAf0q7NN0letG81K3KpxK9VjZzgkYhwaUMYZL_Gsuws4qj8cU6ZbOcTmPyk0wywM3aWFJKE7A9gIxL4yLaIE_ODTS-tzGNyUQT1HgSDvsygyPXVrc20_IgHgEuF6tKeAWPsQRuSbFSsW1Z6hBkjb3b_Yv5obhMeds&pv=2

http://download2232.mediafire.com/wqgc4m20cmgg/.../Patch_1.0_GTA_SA.exe

http://s7489.chomikuj.pl/File.aspx?e=o6JTcKHx8fcAf0q7NN0leu_J_MKPrwuCOdykHMaAa4IQbEweYhNLZzUq3PNn0FGCSkzcR5qfq3noWLJWQswVmG_ZJaZkpxv54khgIwnUXSnzPfh2JJro3-Q4kChcpwW6RPuwvEJtoYTB574ULPuLkA&pv=2

http://s7489.chomikuj.pl/File.aspx?e=o6JTcKHx8fcAf0q7NN0letG81K3KpxK9VjZzgkYhwaVEXkq0aYoFgmm93jx-k1CWbWshdvSHmURWhQzOxpqICfxgM5acCM6B9EXDelaBol7ufpEASWHor5DyU1O2hCQuxa4HnIZhwhKZ9qt0TMzUErKuL3gXQazfgEbma_aCSs0&pv=2

http://s7489.chomikuj.pl/File.aspx?e=o6JTcKHx8fcAf0q7NN0letG81K3KpxK9VjZzgkYhwaXnfXrYEeO73PCenMUg31I9pjGFvyUDfc6M-YP9FFODgcaeuY7CuMVKBPK5Bjgy_2iyBAX1SCNx_-68qMvLT8wM5J2Tsl7ZXDeR6Jy5bD1I1dP13lBR0LVchY7Pmxd2H8M&pv=2

http://download1850.mediafire.com/o0m1n0ly59qg/.../Patch_1.0_GTA_SA.exe

http://gta.net.pl/1249,download.html

Scan gtasa_patch.exe - Powered by Reason Core Security