Gridinsoft Logo
File Icon

The gta_sa.exe File Analysis

Technical Analysis

File Name gta_sa.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows
Scanner Version 1.0.218.174
Database Version 2025-06-18 19:00:25 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
14,405,632
File Size (bytes)
2025-06-18
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
e7697a085336f974a4a6102a51223960
SHA1
0df50d56ef9e304c8d59366afa9aa5c71159261d
SHA256
8c609f108ad737deffbd0d17c702f5974d290c4379de742277b809f80350da1c
SHA512
2abc0796fa3f4e194c7714ea15e6fea0ce34adee467adfb6ad96d56470718f7ae7c11dbe38f91699bd933a29edf7b0cf62bcdcc742df58a2aeb2b518e5c90d41
ImpHash
c07fc76a0773659fb8c5e6b5013914ea

PE Analysis

Basic Information

Icon
Hash: 3f3b8db35f03df7666b48c6145ce7ece
Fuzzy: c3490d0dc955fceff9c25d498de3397c
dHash: 8e87878e9e9c8eb6
Image Base 0x00400000
Entry Point 0x012ffe40
Compilation Time 2005-04-28 14:22:02
Checksum 0x00000000 (Actual: 0x00dbd561)
OS Version 4.0
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows
PDB Path x:\SA_PC_SRC (pcv110 - final)\gta_source\MSVC PC files\D3D9 Final\gta_sa.pdb
Digital Signature No valid SignedData structure was found.
Imports 10 libraries
WINMM, vorbisfile, WS2_32, EAX, KERNEL32, USER32, GDI32, ADVAPI32, ole32, VERSION
Exports 0 functions
Resources 3 Resources
Sections 11 Sections

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 4,545,754 bytes 4,546,560 bytes 8.00 (Packed/Encrypted) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 759A86EC888ACA835BE83BEBB36C1CC1
_rwcseg 0x00457000 1,105 bytes 4,096 bytes 2.94 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 0C2F94CF9C1C85E37A8D1A6D9C1CD35B
.rdata 0x00458000 307,868 bytes 311,296 bytes 5.54 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ DB7D4D54315FD5A8A7976F276EDDFC9F
.data 0x004a4000 4,166,708 bytes 262,144 bytes 4.72 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 8995715A053EF41F4333BDF7D75BEA65
_TEXT_HA 0x0089e000 68,226 bytes 69,632 bytes 6.54 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE FEBC8925FFD3776DE6530510BFA64292
_rwdseg 0x008af000 8 bytes 4,096 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 620F0B67A91F7F74151BC5BE745B7110
.rsrc 0x008b0000 1,312 bytes 4,096 bytes 1.54 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 646AFD3F5531F001CD9B81D0F834F78F
.text 0x008b1000 6,593,312 bytes 6,594,560 bytes 7.99 (Packed/Encrypted) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F062B900278A4650741B3BB5D8D42279
.init 0x00efb000 22,704 bytes 24,576 bytes 6.10 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE CB55FBA15ADDD8F19DB1A0801A1A6435
.data 0x00f01000 2,442,180 bytes 2,445,312 bytes 2.93 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 878547F1485A698402473D89664A5C14
.securom 0x01156000 135,168 bytes 135,168 bytes 6.47 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 7F9A63689422C0BE83E02B065491D857
Entropy Analysis Alert

2 section(s) with high entropy (≥7.5) detected - possible packing/encryption

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 3 (1,066 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 744 bytes
69.8%
RT_DIALOG 1 302 bytes
28.3%
RT_GROUP_ICON 1 20 bytes
1.9%

Certificate Chain Analysis

No Digital Signatures

This file is not digitally signed.

Security Implications:
  • Cannot verify the publisher's identity
  • Increased security risk when running this file
  • May trigger security warnings on some systems

⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources

Certificate Verification Status

No valid SignedData structure was found.

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware