sa-mp-0.3.7-install.exe

The program is a setup application that uses the Nullsoft Scriptable Install System installer. The file has been seen being downloaded from dl.gta-sa-mp.de.
MD5:
e2cb0061a42e86a7ff4960c975bf4502

SHA-1:
8d15a73de83bf15ec4859227b89e48903e6c8d8e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/28/2024 4:37:37 PM UTC  (today)

File size:
15.6 MB (16,347,830 bytes)

File type:
Executable application (Win32 EXE)

Installer:
Nullsoft Scriptable Install System

Common path:
C:\Documents and Settings\{user}\My documents\downloads\sa-mp-0.3.7-install.exe

File PE Metadata
Compilation timestamp:
12/6/2009 12:50:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
393216:DShRPtmflaNtY7G8t+LdFyBV9DVimtbA9yRbABehQtAuGuSwcBn:DShRPtklUt3Nd2VvimtbeGbbhQtWBn

Entry address:
0x30CB

Entry point:
8A, EC, C6, C5, 0E, 86, FB, 8D, 2D, 71, 3A, F7, 29, 88, E1, 89, DE, 11, DD, 8D, 3D, 49, 4C, AA, 9D, 11, DD, 0F, BF, C9, C7, C7, 60, D5, 81, 36, F7, C5, 6D, 93, 12, F8, 0B, C6, F3, EB, 09, C7, C0, A6, C7, FB, 2E, 0F, B7, EF, 68, 80, 4A, 04, 00, 80, CF, B8, 5A, 86, C4, 81, EA, 0A, 3C, 04, 00, C6, C3, 64, 18, CB, 77, 02, 8A, EF, 4F, 81, EA, 06, CE, 00, 00, 8D, 2D, D8, DD, 75, DA, B5, 02, 81, C2, 05, CE, 00, 00, 81, FE, 63, 85, 24, 8B, 20, CD, FE, CB, FF, C3, FF, CD, 81, FA, A7, 00, 00, 00, 0F, 87, C8, FF, FF...
 
[+]

Code size:
22.5 KB (23,040 bytes)

The file sa-mp-0.3.7-install.exe has been seen being distributed by the following URL.

Scan sa-mp-0.3.7-install.exe - Powered by Reason Core Security