Threat Database Hacktool PUP.GameHack.LA

PUP.GameHack.LA

The detection of PUP.GameHack.LA on your system indicates the presence of a potentially unwanted program (PUP) that may be compromising your computer's security and performance. It is essential to understand the nature of this threat and take immediate action to remove it to prevent potential harm.

What Is PUP.GameHack.LA?

PUP.GameHack.LA is a type of potentially unwanted program that is designed to operate without the user's knowledge or consent. These programs can be bundled with other software, downloaded from untrusted sources, or installed through exploits. While they may not be as malicious as other types of malware, PUPs can still pose a significant risk to your system's security and stability.

How PUP.GameHack.LA Operates

PUPs like PUP.GameHack.LA often operate by installing additional software, displaying unwanted advertisements, or collecting user data without consent. They may also modify system settings, registry entries, or browser configurations to achieve their goals. In some cases, PUPs can even install other malicious programs or create backdoors for remote access.

It is crucial to note that PUPs can be difficult to detect, as they often disguise themselves as legitimate programs or system files. They may also use social engineering tactics to trick users into installing or activating them.

Symptoms of Infection

If your system is infected with PUP.GameHack.LA, you may experience a range of symptoms, including slow system performance, unwanted pop-ups or advertisements, and unexpected changes to your browser settings or homepage. You may also notice unfamiliar programs or icons on your desktop or system tray.

  • Unwanted browser extensions or toolbars
  • Modified search engine or homepage settings
  • Pop-ups or advertisements that appear unexpectedly
  • Slow system performance or crashes
  • Unfamiliar programs or icons on your desktop or system tray

How to Remove PUP.GameHack.LA

  1. Boot your system in Safe Mode with Networking to prevent the PUP from loading and to allow for a clean removal process.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system and detect any malicious files or programs.
  3. Uninstall any suspicious programs or software that you do not recognize or need.
  4. Reset your browser settings to their default values, including Chrome, Firefox, and Edge, to remove any unwanted extensions or modifications.
  5. Reboot your system and perform another scan with your anti-malware tool to ensure that all remnants of the PUP have been removed.

Conclusion

Removing PUP.GameHack.LA from your system requires careful attention to detail and a thorough understanding of the removal process. By following the steps outlined above and using reputable anti-malware tools, you can effectively remove this potentially unwanted program and restore your system to a safe and stable state. Remember to always be cautious when downloading software or clicking on links from untrusted sources, and regularly scan your system for malware to prevent future infections.

Analysis Report

General information

Family Name: PUP.GameHack.LA
Signature status: No Signature

Known Samples

MD5: b3579e1dd70e53e4a04b2ace7d7a6c51
SHA1: 35e24e9f75064209559f2eeffd8c9b2282fe49c4
SHA256: CC3A8D05A2DDC5437E35969F3F15C63D131CCBB1453F12759A03FA3190BF7F1A
File Size: 838.00 KB, 838003 bytes
MD5: a30e960639915ff676a07fb8014f152e
SHA1: 31da41706bf12a56569a04f4271135dcc85d6458
SHA256: DBE218C7CA43F71E83D5CAEC82AC9B18D16E23F595089A0B1194EBFEC610DD8F
File Size: 744.52 KB, 744517 bytes
MD5: 80cc8d5b37c3e237889b470b6d59cdef
SHA1: 8c2563cfac33f7132c5d949e68d5a8ab65d114f5
SHA256: 6A542A222468C2F7B077A64AE8DB05AC10F4A47101D49B2E99BA0D3A2ADDDD9C
File Size: 532.48 KB, 532480 bytes
MD5: 479198e8c726dba58a8476e70d916f39
SHA1: 1103bd61845c89f4ce13ae9bd82fb4a0ff73592c
SHA256: 92760C9E7A7322F1B74ED2B16295617A56C05EA9407116ADB230F8D9DDF744DF
File Size: 694.27 KB, 694272 bytes
MD5: 36abc97ba6b01c0a4fc267c54f53b1f2
SHA1: d80863161a248a2aa560dfceb0a046fe599bf095
SHA256: 3104E501CD352839ABAE649D3EE2C6F7ED7F6FA87BFE812589761F106251C15E
File Size: 742.46 KB, 742457 bytes
Show More
MD5: 1d16de23771e816d12020276ba3ed1e9
SHA1: 47ffb04a2bea283731923579de47e7ad4801f669
SHA256: C56B88B248D24F770B7E675D9CC20E65AF91BED0BDC99894CC47980AD4AC7995
File Size: 748.54 KB, 748544 bytes
MD5: c8667c2df7e050cb95d1807f08c8c7fd
SHA1: d0d23e5a3c36bd757d7b60613c3d27f03c967368
SHA256: 18CB87C9D8FFBE99DD182CBB955CD6DDE39A964A6D9DCA65E2F6FEEACB129163
File Size: 701.44 KB, 701440 bytes
MD5: 1b39d5f73c553ec87320549c2ecc6a2b
SHA1: 7379f355dc3e39ea8287a8ca30f62153dcd8a8cc
SHA256: 1159FA6919BA3416E46FFCE451256DBAC5701E10C7D2EF9B9C781843DF0235BE
File Size: 660.53 KB, 660534 bytes
MD5: 0317d2d2085eb6da3ffdd32a55245536
SHA1: 1ec26a27792b3c0af0d209d0283cf6e43890f217
SHA256: CAFB07B5F2C30C8E40C0B5A2B205F643A558EF8A2291E26745890B854729D948
File Size: 733.64 KB, 733639 bytes
MD5: 233df4aed6c6a8c8cf41fd6cb94aa271
SHA1: 4ed9deaf3a0389dc1bc007e9b520e4b139ff767a
SHA256: 04A32038D62E7BE7CE3FD70E653DD18C066233086C3DBD33A5B50A11260947B2
File Size: 677.43 KB, 677430 bytes
MD5: d44f03ff1febf18c802fa671cefc858e
SHA1: 0afbf15607c1bd5dd5cb5c77b3423688304ed024
SHA256: 0BA7D22210F79345B0BD6C73BD0121CAB29703A45EED9614D57CE1938405AB1E
File Size: 753.72 KB, 753723 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has been packed
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Additional Information Created with Bytessence Install Maker, a freeware install builder available from http://www.bytessence.com
B I M Version 5.40
Company Name
  • Agencia Tributaria
  • CheatHappens
  • Ligi Żużlowe
  • MeGaHeRTZ TeaM
Email
  • ligi.zuzlowe@gmail.com
  • soporte@correo.aeat.es
File Description
  • Configura los navegadores IE y Firefox
  • MeGaHeRTZ PaTCHeR
  • Setup.exe
File Version
  • 2025.3.2.0
  • 2,2,0,0
  • 1.0010
  • 1.0005
  • 1.0004
  • 1.0002
  • 1.0000
  • 1,0,0,0
Internal Name
  • MeGaHeRTZ PaTCHeR
  • n/a
Legal Copyright
  • MeGaHeRTZ TeaM
  • n/a
  • Zastrzeżone
Legal Trademarks MeGaHeRTZ TeaM
Original Filename
  • MeGaHeRTZ PaTCHeR
  • n/a
Private Build 2025.3.2.0
Product Name
  • Configurador AEAT
  • Crysis 2 Trainer
  • Depth Trainer
  • Dungeon Seige III Trainer
  • FIM Speedway Grand Prix 15 Engine Patch
  • Galaxy on Fire 2 Trainer
  • Medieval 2 Total War Trainer
  • MeGaHeRTZ PaTCHeR
  • Men of War Assault Squad 2 Trainer
  • Saints Row Gat out of Hell Trainer
Show More
  • Trials Fusion Trainer
Product Version
  • 20665
  • 20640
  • 20311
  • 20103
  • 19057
  • 17191
  • 16209
  • 12340
  • 2025.3.2.0
  • 2.00
Show More
  • 1.0
Special Build 2025.3.2.0
Website
  • http://www.ligi-żużlowe.pl/
  • www.agenciatributaria.es

File Traits

  • 00 section
  • 2+ executable sections
  • ASPack v2.12
  • big overlay
  • HighEntropy
  • Installer Version
  • packed
  • VirtualQueryEx
  • WriteProcessMemory
  • x86

Block Information

Total Blocks: 982
Potentially Malicious Blocks: 60
Whitelisted Blocks: 920
Unknown Blocks: 2

Visual Map

? x ? x x x x x x x x 0 0 x x x 0 x x 0 x x x x x x x x x x x x x x 0 x 0 x 0 x x x 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 x x x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x x x 0 0 0 x x x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • GameHack.LA

Files Modified

File Attributes
c:\_temp_1827468.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\_temp_5224560.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\program files\common files\system\symsrv.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\a1d26e2\a70710501a38.tmp Generic Write,Read Attributes
c:\users\user\downloads\0.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\downloads\1.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\downloads\3.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\downloads\4.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\downloads\5.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\downloads\6.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data
Show More
c:\users\user\downloads\7.ogg Generic Read,Write Data,Write Attributes,Write extended,Append data

Windows API Usage

Category API
Service Control
  • OpenSCManager
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserName
  • GetUserObjectInformation
Keyboard Access
  • GetKeyState

Related Posts

Trending

Most Viewed

Loading...