gh3.exe

Guitar Hero III

Aspyr Media, Inc.

This is a setup program which is used to install the application. The file has been seen being downloaded from download681.mediafire.com and multiple other hosts.
Publisher:
Aspyr Media, Inc.

Product:
Guitar Hero III

Version:
1.0.6.57108

MD5:
8b38b231bf569a739b82b17420e90184

SHA-1:
37383076d72831cd9bdbfada193424c9ed957015

SHA-256:
801f8a522651a479d63a9ff5fbde5be949ba0b7ad2ec0e5fb1d92ab1a8ef2154

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
5/17/2024 8:00:30 AM UTC  (today)

Scan engine
Detection
Engine version

Bkav FE
W32.HfsAutoB
1.3.0.4959

File size:
6.7 MB (6,989,824 bytes)

Product version:
0.0.0.0

Copyright:
© Aspyr Media, Inc.

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\aspyr\guitar hero iii\gh3.exe

File PE Metadata
Compilation timestamp:
10/13/2007 7:12:56 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
98304:qQjLoRlhzPR6QUnszOdOpuVL5/955LXur4amNqIBi0AYL4l:qQQfhrR6kUlZXnBi0Ae4l

Entry address:
0x2AD629

Entry point:
E8, 90, D6, 00, 00, E9, 16, FE, FF, FF, 3B, 0D, B4, 13, 9E, 00, 75, 02, F3, C3, E9, 10, D7, 00, 00, 75, 01, C3, 55, 8B, EC, 83, EC, 00, 50, 52, 53, 56, 57, 6A, 00, FF, 75, 04, E8, 9C, DA, 00, 00, 59, 59, 5F, 5E, 5B, 5A, 58, 8B, E5, 5D, C3, 55, 8B, EC, 51, 51, 53, 56, 8B, F2, 33, DB, 39, 1E, 8B, D1, 89, 55, F8, 89, 5D, FC, 7E, 3F, 57, BF, CC, CC, CC, CC, 8B, 46, 04, 03, C3, 8B, 08, 39, 7C, 11, FC, 75, 0A, 8B, 40, 04, 03, C1, 39, 3C, 10, 74, 14, 8B, 46, 04, FF, 74, 18, 08, FF, 75, 04, E8, 86, DA, 00, 00, 8B...
 
[+]

Code size:
5.2 MB (5,477,888 bytes)

The file gh3.exe has been discovered within the following programs.

Guitar Hero 3  by Salat Production
About 6% of users remove it
Guitar Hero III  by Aspyr Media
Guitar Hero III: Legends of Rock is a music video game, the third main installment in the Guitar Hero series, and the fourth title overall.
www.aspyr.com
7% remove it
 
Powered by Should I Remove It?

The file gh3.exe has been seen being distributed by the following 28 URLs.

http://download681.mediafire.com/5vxt9kw8m6xg/.../gh3.exe

http://download1787.mediafire.com/43b7jyizj35g/.../gh3.exe

http://download2143.mediafire.com/lkl0wvaa4u9g/.../gh3.exe

http://download844.mediafire.com/x7uqwft2j1jg/.../gh3.exe

http://download1787.mediafire.com/kzyls7y64xig/.../gh3.exe

http://download844.mediafire.com/746ti8tltr2g/.../gh3.exe

http://download1787.mediafire.com/kamkfakubaog/.../gh3.exe

http://download681.mediafire.com/scowxe23rx5g/.../gh3.exe

http://download628.mediafire.com/kwmw1ygcanig/.../gh3.exe

http://download1787.mediafire.com/a1inicay5t1g/.../gh3.exe

http://download2143.mediafire.com/1th53fzllo6g/.../gh3.exe

http://download1787.mediafire.com/tuyfhcauealg/.../gh3.exe

http://download681.mediafire.com/nzp04bikdsvg/.../gh3.exe

http://download1310.mediafire.com/tl1dhzzk7weg/.../gh3.exe

http://download681.mediafire.com/ahnsa7y26yfg/.../gh3.exe

http://download681.mediafire.com/d8n7d5o862dg/.../gh3.exe

http://download1787.mediafire.com/savtvcg556kg/.../gh3.exe

http://download1787.mediafire.com/8bk2sjz4swrg/.../gh3.exe

about:internet

Scan gh3.exe - Powered by Reason Core Security