gothic2_fix-2.6.0.0-rev2.exe

${MOD_COMP}

The program is a setup application that uses the NSIS (Nullsoft Scriptable Install System) installer. The file has been seen being downloaded from www.worldofgothic.de and multiple other hosts.
Publisher:
${MOD_COMP}

Description:
Gothic II - 2.6 (fix)-rev2

Version:
0.0

MD5:
72425adc6fa99d3cf8a3ccdcd312ef5e

SHA-1:
db7d853727e12e33e7339c76f6f274377a1afa63

SHA-256:
675c7949974a3e7e6be85f9f5ed1b624a6ea3192845bb822e15396c887bf38ae

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/15/2024 11:04:27 AM UTC  (today)

File size:
2.9 MB (3,031,183 bytes)

Copyright:
${MOD_COPY}

Original file name:
Gothic2-0.0.exe

File type:
Executable application (Win32 EXE)

Installer:
NSIS (Nullsoft Scriptable Install System)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\gothic2_fix-2.6.0.0-rev2.exe

File PE Metadata
Compilation timestamp:
12/5/2009 11:50:41 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
49152:eA8Qux0YPdeFaD0+s1mI0LIzwE9TCed+WKX8jY4k6+sun9JENhSQCWyDkjBo3ro:aSYPN0/1mI0LIzwE9Z5HY4kphJ62Wyg3

Entry address:
0x30CB

Entry point:
81, EC, 80, 01, 00, 00, 53, 55, 56, 33, DB, 57, 89, 5C, 24, 18, C7, 44, 24, 10, 60, 91, 40, 00, 33, F6, C6, 44, 24, 14, 20, FF, 15, 30, 70, 40, 00, 68, 01, 80, 00, 00, FF, 15, B0, 70, 40, 00, 53, FF, 15, 7C, 72, 40, 00, 6A, 08, A3, 38, 3F, 42, 00, E8, F1, 2B, 00, 00, A3, 84, 3E, 42, 00, 53, 8D, 44, 24, 34, 68, 60, 01, 00, 00, 50, 53, 68, 30, F4, 41, 00, FF, 15, 58, 71, 40, 00, 68, 54, 91, 40, 00, 68, 80, 36, 42, 00, E8, A4, 28, 00, 00, FF, 15, AC, 70, 40, 00, BF, 00, 90, 42, 00, 50, 57, E8, 92, 28, 00, 00...
 
[+]

Packer / compiler:
Nullsoft install system v2.x

Code size:
22.5 KB (23,040 bytes)

The file gothic2_fix-2.6.0.0-rev2.exe has been discovered within the following program.

Gothic 2 Gold  by GOG.com
Gothic 2 Gold is a digital video game distributed through the DRM-free GOG service and can be run from the optional download manager.
www.gog.com
4% remove it
 
Powered by Should I Remove It?

The file gothic2_fix-2.6.0.0-rev2.exe has been seen being distributed by the following 33 URLs.

https://www.worldofgothic.de/download.php?id=833

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=9eemih0dvrbl4olt7teqtc5cr4&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=qmoahdqp7ignp8utbrjuoe69t5&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=kf6lo16n0pjq9lc8c846ekm3j0&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=89gltr6a1udj2ilqugigdlgsa4&action=downloads;sa=downfile&id=44

http://s10755.chomikuj.pl/File.aspx?e=rtl6MCmBRs7wqrOeHDK2hYfNRPiI5n4zRHwzP1U3HiXMhaLOrOHS0X5Vw1eKGRJa7q_xxylcMutYwdNPC49z96AREngXwim52dbU_-5Eysmy-y5OaEY9KEU0ZUIy5i6M5si421BjFyQNP-0dNL1czLBGFy-jfRbMrlmQPzr8DNM&pv=2

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=8lp5ova0s6ognia3d98r6la6g3&action=downloads;sa=downfile&id=44

https://downloader.disk.yandex.com/disk/0282698b9ca03985167a0a58d0781edd8fda5ee3421fd5fde2abe0fd85d21616/563eb348/mKKcZR8QV7KxZQkHcAA2MxSgRO2J6AVuH1Ue9rbIahjmhGXFwta2GF23154f8MUL0ACBDEGE5N8ycNl0Y-QOgg==?uid=0&filename=gothic2_fix-2.6.0.0-rev2.exe&disposition=attachment&hash=ctBsJ5xuMOXb0bcSW2WDZJkIFhHGgDD4tJ KOWdJeN0=:/games/gothic/patches/G2/.../x-msdownload&fsize=3031183&hid=54b694045df4de305e8a410477f362ca&media_type=executable&tknv=v2

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=9nlhhlq5716t4vrf3ekssiqir7&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=48jl4k0qo6imj7k5tk22roi4s1&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=lh683vuhpfqt5uckk8o5akm2h5&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=h9gsb7ukj5vl9hus5p6j5c5735&action=downloads;sa=downfile&id=44

http://marant.tawerna-gothic.pl/index.php?PHPSESSID=5ues8nuuimjuj8tir7flf1uft6&action=downloads;sa=downfile&id=44

Latest 30 of 33 download URLs

Scan gothic2_fix-2.6.0.0-rev2.exe - Powered by Reason Core Security