permedit.exe

MD5:
dd0091cc30b7c7d4956ccf7f8176ea0b

SHA-1:
af525944795580f01e13b37d15cb74d1750fcc5f

SHA-256:
46c4da6b94b8b739e38225034dac015883ed4f0dce2e817cc1ac4abadb41f6de

Scanner detections:
6 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
5/16/2024 8:08:42 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
PSW.Ldpinch
2015.0.3569

Bkav FE
W32.HfsAutoB
1.3.0.4924

IKARUS anti.virus
Trojan-PWS.LDPinch
t3scan.2.2.29

K7 AntiVirus
Riskware
13.175.11103

Rising Antivirus
PE:Trojan.Win32.Generic.129A4B57!312101719
23.00.65.14207

Vba32 AntiVirus
Trojan.Agent.27105
3.12.24.3

File size:
23 KB (23,552 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\rockstar games\gta san andreas\gta san andreas\cam hack sa by aleel wa 3eonk\permedit.exe

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.52

CTPH (ssdeep):
384:Ke2JAVO1IzoO0GfgVRnqzxTXV99oil1db4oc0QzCDhpE2HbjqDd35ZPDolg16RoD:KeAYlWWtXVJdb4oN2ypr7jy5ZPDx16RY

Entry address:
0x2190

Entry point:
55, 8B, EC, 53, 56, 57, BB, 00, 60, 40, 00, 66, 2E, F7, 05, 1E, 28, 40, 00, 04, 00, 0F, 85, DB, 00, 00, 00, 6A, 00, FF, 15, 18, 73, 40, 00, E8, 9C, 02, 00, 00, C7, 83, 08, 01, 00, 00, 01, 00, 00, 00, 8D, 83, 94, 02, 00, 00, 50, FF, 15, C8, 72, 40, 00, 83, EC, 44, C7, 04, 24, 44, 00, 00, 00, C7, 44, 24, 2C, 00, 00, 00, 00, 54, FF, 15, C0, 72, 40, 00, B8, 0A, 00, 00, 00, F7, 44, 24, 2C, 01, 00, 00, 00, 74, 05, 0F, B7, 44, 24, 30, 83, C4, 44, 89, 83, FE, 00, 00, 00, FF, 15, AC, 72, 40, 00, E8, 21, 04, 00, 00...
 
[+]

Entropy:
6.2951

Developed / compiled with:
Microsoft Visual C++

Code size:
17.9 KB (18,330 bytes)

The file permedit.exe has been seen being distributed by the following URL.

Scan permedit.exe - Powered by Reason Core Security