× В вашем браузере отключены куки (cookie). Для полноценной работы сайта необходимо включить сохранение файлов cookie.
SHA256: d302e00120d50e9a7d116ba4844c8f3d0231dc76b1cd61fd98ffd3309ba3d2e5
Имя файла: Counter-Strike Global Offensive.exe
Показатель выявления: 0 / 67
Дата анализа: 2017-11-12 00:06:17 UTC (6 месяцев, 2 недель назад) Показать последний анализ
Антивирус Результат Дата обновления
Ad-Aware 20171111
AegisLab 20171111
AhnLab-V3 20171111
Alibaba 20170911
ALYac 20171110
Antiy-AVL 20171111
Arcabit 20171110
Avast 20171111
Avast-Mobile 20171111
AVG 20171111
Avira (no cloud) 20171111
AVware 20171111
Baidu 20171109
BitDefender 20171111
Bkav 20171111
CAT-QuickHeal 20171111
ClamAV 20171111
CMC 20171109
Comodo 20171111
CrowdStrike Falcon (ML) 20171016
Cybereason 20171030
Cylance 20171112
Cyren 20171111
DrWeb 20171111
eGambit 20171112
Emsisoft 20171111
Endgame 20171024
ESET-NOD32 20171111
F-Prot 20171111
F-Secure 20171111
Fortinet 20171111
GData 20171111
Ikarus 20171111
Sophos ML 20170914
Jiangmin 20171110
K7AntiVirus 20171111
K7GW 20171112
Kaspersky 20171111
Kingsoft 20171112
Malwarebytes 20171112
MAX 20171111
McAfee 20171111
McAfee-GW-Edition 20171111
Microsoft 20171111
eScan 20171111
NANO-Antivirus 20171111
nProtect 20171111
Palo Alto Networks (Known Signatures) 20171112
Panda 20171111
Qihoo-360 20171112
Rising 20171112
SentinelOne (Static ML) 20171019
Sophos AV 20171111
SUPERAntiSpyware 20171111
Symantec 20171111
Symantec Mobile Insight 20171110
Tencent 20171112
TheHacker 20171102
TrendMicro 20171111
TrendMicro-HouseCall 20171111
Trustlook 20171112
VBA32 20171110
VIPRE 20171111
ViRobot 20171111
Webroot 20171112
WhiteArmor 20171104
Yandex 20171110
Zillya 20171110
ZoneAlarm by Check Point 20171111
Zoner 20171111
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
CSGO-Download.ru

Product CS:GO Launcher
Internal name CS:GO Launcher
File version 3.1.0.0
Description Лаунчер CS:GO
Packers identified
F-PROT UPX_LZMA
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-11-11 18:41:02
Entry Point 0x00538060
Number of sections 3
PE sections
PE imports
VirtualProtect
LoadLibraryA
ExitProcess
GetProcAddress
RegCloseKey
ImageList_Add
GetOpenFileNameW
NetWkstaGetInfo
OleDraw
VariantCopy
SHGetMalloc
VerQueryValueW
OpenPrinterW
Number of PE resources by type
RT_STRING 48
RT_BITMAP 29
RT_RCDATA 20
RT_GROUP_CURSOR 10
RT_CURSOR 10
UNICODEDATA 6
RT_ICON 5
RT_DIALOG 2
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 62
ENGLISH US 60
ENGLISH NEUTRAL 7
RUSSIAN 4
PE resources
ExifTool file metadata
CodeSize
1572864

SubsystemVersion
5.0

InitializedDataSize
110592

ImageVersion
0.0

ProductName
CS:GO Launcher

FileVersionNumber
3.1.0.0

UninitializedDataSize
3899392

LanguageCode
Russian

FileFlagsMask
0x003f

CharacterSet
Windows, Cyrillic

LinkerVersion
2.25

FileTypeExtension
exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
3.1.0.0

TimeStamp
2017:11:11 19:41:02+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
CS:GO Launcher

ProgramID
com.embarcadero.CSLauncher

ProductVersion
3.1.0.0

FileDescription
CS:GO

OSVersion
5.0

FileOS
Win32

LegalCopyright
CSGO-Download.ru

MachineType
Intel 386 or later, and compatibles

CompanyName
CSGO-Download.ru

LegalTrademarks
CSGO-Download.ru

FileSubtype
0

ProductVersionNumber
3.1.0.0

EntryPoint
0x538060

ObjectFileType
Executable application

Execution parents
Compressed bundles
File identification
MD5 8f9df22542ca2dc092da085e43b57764
SHA1 3cd13afcaf224ea5c5f69eebd8e40e86eb1bc1a1
SHA256 d302e00120d50e9a7d116ba4844c8f3d0231dc76b1cd61fd98ffd3309ba3d2e5
ssdeep
24576:oUMyZrQxzli1GCHm0NTIiHAAyAZ1kUgA/j2THCNkGKZza7WUMidn:6lmG06MUAZ15gViNsZz

authentihash 21fd866e7042717f7c9a5f5f924d1a6280bfd213d06c8652693e613d7b66dca3
imphash f8513a5afe8d34aabd869d62696541c9
Размер файла 1.6 MБ ( 1683456 bytes )
Тип файла Win32 EXE
Описание
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID UPX compressed Win32 Executable (68.2%)
Win32 Executable (generic) (11.3%)
Win16/32 Executable Delphi generic (5.2%)
OS/2 Executable (generic) (5.1%)
Generic Win/DOS Executable (5.0%)
Tags
peexe

VirusTotal metadata
First submission 2017-11-12 00:06:17 UTC (6 месяцев, 2 недель назад)
Last submission 2018-05-26 07:15:08 UTC (1 день, 5 часов назад)
Имена файлов Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
CS:GO Launcher
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
d302e00120d50e9a7d116ba4844c8f3d0231dc76b1cd61fd98ffd3309ba3d2e5_d302e00120d50e9a_counter-strike global offensive.exe
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
1002-3cd13afcaf224ea5c5f69eebd8e40e86eb1bc1a1
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
Counter-Strike Global Offensive.exe
Нет комментариев. Из участников сообщества VirusTotal ещё пока никто не оставил комментарий по поводу результатов анализа. Станьте первым!

Оставьте свой комментарий...

?
Отправить

Вы не выполнили вход. Только зарегистрированные пользователи могут оставлять комментарии. Выполните вход и получите право голоса!

Нет голосов. Ещё пока никто не проголосовал за результаты анализа. Станьте первым!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Created mutexes
Opened mutexes
Hooking activity
Runtime DLLs
Additional details
The file uses the IsDebuggerPresent Windows API function in order to see whether it is being debugged.
The file installs an application-defined hook procedure into a hook chain. You would install a hook procedure to monitor the system for certain types of events. These events are associated either with a specific thread or with all threads in the same desktop as the calling thread. This is done making use of the SetWindowsHook Windows API function.
UDP communications