hl2.exe

This is a setup program which is used to install the application. It runs as a scheduled task under the Windows Task Scheduler. The file has been seen being downloaded from dla.uloz.to and multiple other hosts.
MD5:
7c271bbd974c760f516f1c9f9b61e0f2

SHA-1:
a1c9b9f1a9cc568ed707d880f78d16ce6d60ab4f

SHA-256:
4a06de84351ffbccc9bb1575c21142074c240f54902557e13e40ba037976d25f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

False Positives:
A number of engines detected this file but were erroneous detections (false positives).

Analysis date:
11/23/2024 12:36:18 PM UTC  (today)

File size:
104 KB (106,496 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\counter-strike source\hl2.exe

File PE Metadata
Compilation timestamp:
4/19/2006 6:57:24 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
1536:hXRI3bwH4YFDLkqwaif9vk39HNJ24F8ikWjlnX7X5XYZXP/b1:zIraLLkqFlN8biLjlnLJI//b

Entry address:
0x153C

Entry point:
6A, 60, 68, 28, D2, 40, 00, E8, 10, 0E, 00, 00, BF, 94, 00, 00, 00, 8B, C7, E8, 0C, FF, FF, FF, 89, 65, E8, 8B, F4, 89, 3E, 56, FF, 15, 30, D0, 40, 00, 8B, 4E, 10, 89, 0D, 34, 0D, 41, 00, 8B, 46, 04, A3, 40, 0D, 41, 00, 8B, 56, 08, 89, 15, 44, 0D, 41, 00, 8B, 76, 0C, 81, E6, FF, 7F, 00, 00, 89, 35, 38, 0D, 41, 00, 83, F9, 02, 74, 0C, 81, CE, 00, 80, 00, 00, 89, 35, 38, 0D, 41, 00, C1, E0, 08, 03, C2, A3, 3C, 0D, 41, 00, 33, F6, 56, 8B, 3D, 24, D0, 40, 00, FF, D7, 66, 81, 38, 4D, 5A, 75, 1F, 8B, 48, 3C, 03...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v7.0

Code size:
48 KB (49,152 bytes)

Scheduled Task
Task name:
{A3DE448E-CA69-4A05-961C-907455C534CC}

Trigger:
Registration (Runs on registration)


Windows Firewall Allowed Program
Name:
C:\Program Files\Counter-Strike Source\hl2.exe


The file hl2.exe has been discovered within the following programs.

ArnA 2: Combined Operations  by Bohemia Interactive
Publisher's description - “Arma 2: Combined Operations brings together the award-winning Arma 2 and it's stand-alone expansion Arma 2: Operation Arrowhead to combine them into the ultimate military combat experience.”
www.arma2.com/agegate/agegate.html
4% remove it
Counter 2010  by BaRaN
www.BaRaN.com
About 7% of users remove it
www.MSGROUPGAMES.com
About 1% of users remove it
Counter-Strike Source DZ  by DiGiTALZONE
forum.digitalpowered.info
About 3% of users remove it
Counter-Strike: Source  by Valve Corporation
Counter-Strike: Source is a first-person shooter video game developed by Valve Corporation. It is a complete remake of Counter-Strike using the Source game engine, as well as being the first game to use the engine.
www.steampowered.com
8% remove it
Day of Defeat: Source  by Valve Corporation
Day of Defeat: Source is a team-based first-person shooter multiplayer video game developed by Valve Corporation. Set in World War II, the game is an updated version of Day of Defeat, moving from the GoldSrc engine used by its predecessor to the Source engine.
7% remove it
Dystopia  by Team Dystopia
www.dystopia-game.com
About 1% of users remove it
Eternal Silence  by ES Team
www.eternal-silence.net
About 9% of users remove it
Half-Life 2: Deathmatch  by Valve Corporation
Half-Life 2: Deathmatch is a multiplayer first-person shooter video game developed by Valve Corporation. Released on Steam it uses many of the assets from Half-Life 2, and the same Source engine.
5% remove it
Half-Life 2: Episode One  by Valve Corporation
Half-Life 2: Episode One is a first-person shooter video game, the first in a series of episodes that serve as the sequel for Half-Life 2. It was developed by Valve Corporation. The game's events take place immediately after those in Half-Life 2, in and around war-torn City 17.
www.half-life2.com
12% remove it
 
Latest 20 of 17 programs
Powered by Should I Remove It?

The file hl2.exe has been seen being distributed by the following 2 URLs.