The GOG Galaxy 2 0 exe (GOG Galaxy Webinstaller) GOG Sp z o o File Malware Analysis
Gridinsoft Logo
File Icon

The GOG_Galaxy_2.0.exe (GOG Galaxy Webinstaller) File Analysis

Technical Analysis

File Name GOG_Galaxy_2.0.exe
File Type
PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
Scanner Version 1.0.192.174
Database Version 2024-10-15 05:00:32 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
983,624
File Size (bytes)
2024-10-15
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
4e310b3c8eb5fbf369859134863a5cdf
SHA1
4fed7e59415195fc0a2d1a88e8e80e65ed0a7127
SHA256
c5ffa67d268d7ff6730eefcb92da17234d3b48f495285522497827866eb8bb7c
SHA512
33f1a1c62d7d81e4ccad811f2dd90b064236dd2e5bce9e0f5f5d8b3d912c7738e716dfba0484b353a921d7d62e56a8f4b45eafc358c3579c96057c295b0d050b
ImpHash
0b5d23895837448a329cb1b4dc10916a

PE Analysis

Basic Information

Icon
Hash: c48c8c796033f20df9d7b66ecd04d7a6
Fuzzy: 4242793896c9427e8d79d2e07778a00b
dHash: 1e3371734f4d3b0f
Image Base 0x00400000
Entry Point 0x005c62e0
Compilation Time 2020-03-12 14:54:18
Checksum 0x000f8f1e (Actual: 0x000f8b36)
OS Version 5.1
PEiD Signatures PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed
Digital Signature OK
Imports 6 libraries
ADVAPI32, KERNEL32, SHELL32, SHLWAPI, urlmon, USER32
Exports 0 functions
Resources 38 Resources
Sections 3 Sections

Version Information

CompanyName GOG Sp. z o.o.
FileDescription GOG Galaxy Webinstaller
FileVersion 2.0.0.2
InternalName GOG Galaxy Webinstaller.exe
LegalCopyright (C) GOG Sp. z o.o. 2020
ProductName GOG Galaxy Webinstaller
ProductVersion 2.0.0.2
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
UPX0 0x00001000 1,388,544 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
UPX1 0x00154000 471,040 bytes 468,480 bytes 7.93 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 5C4515E9BA1914C8BC741DADBAD6C869
.rsrc 0x001c7000 499,712 bytes 496,640 bytes 5.75 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 766D24CFAC92F585413F9AB9242599E6
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

Resource Analysis

Total Resources: 38 (1,167,122 bytes)
Resource Type Count Total Size Percentage
RT_ICON 17 491,564 bytes
42.1%
RT_MENU 1 74 bytes
0%
RT_DIALOG 1 360 bytes
0%
RT_STRING 1 116 bytes
0%
RT_ACCELERATOR 1 16 bytes
0%
RT_RCDATA 14 672,678 bytes
57.6%
RT_GROUP_ICON 1 244 bytes
0%
RT_VERSION 1 812 bytes
0.1%
RT_MANIFEST 1 1,258 bytes
0.1%

Certificate Chain Analysis

Certificate Information
Product GOG Galaxy Webinstaller
Description GOG Galaxy Webinstaller
File Version 2.0.0.2
Internal Name GOG Galaxy Webinstaller.exe
Copyright (C) GOG Sp. z o.o. 2020
Certificate Chain Summary
GOG Sp. z o.o. #1 Primary
Validity Period: 2019-12-13 00:00:00 → 2021-02-10 12:00:00
Signature Algorithm: sha256RSA
Serial Number: 05 B5 D9 D6 BB 29 60 FB D3 30 C5 D6 B9 B7 B7 D2
DigiCert SHA2 Assured ID Code Signing CA #2 Chain
Validity Period: 2013-10-22 12:00:00 → 2028-10-22 12:00:00
Signature Algorithm: sha256RSA
Serial Number: 04 09 18 1B 5F D5 BB 66 75 53 43 B5 6F 95 50 08
DigiCert Timestamp Responder #3 Chain
Validity Period: 2014-10-22 00:00:00 → 2024-10-22 00:00:00
Signature Algorithm: sha1RSA
Serial Number: 03 01 9A 02 3A FF 58 B1 6B D6 D5 EA E6 17 F0 66
DigiCert Assured ID CA-1 #4 Chain
Validity Period: 2006-11-10 00:00:00 → 2021-11-10 00:00:00
Signature Algorithm: sha1RSA
Serial Number: 06 FD F9 03 96 03 AD EA 00 0A EB 3F 27 BB BA 1B

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware