Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
GalacticShooter (3).exe

Overview

General Information

Sample Name:GalacticShooter (3).exe
Analysis ID:847587
MD5:83024ea067ab552d39ffdb6e12a30817
SHA1:23d6b96f806e1ca8a10dfa16e7f35b3f2801a489
SHA256:f96f3a4f4cdab5176a055736464d979f7cbd902298c910cbbdb08e955695bf73
Infos:

Detection

Score:48
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Tries to harvest and steal browser information (history, passwords, etc)
May check the online IP address of the machine
Uses 32bit PE files
Drops files with a non-matching file extension (content does not match file extension)
Queries the volume information (name, serial number etc) of a device
Drops PE files
Tries to load missing DLLs
Very long cmdline option found, this is very uncommon (may be encrypted or packed)
PE file contains sections with non-standard names
Binary contains a suspicious time stamp
Queries keyboard layouts
Enables security privileges
PE file contains more sections than normal
Found dropped PE file which has not been started or loaded
Creates a process in suspended mode (likely to inject code)
IP address seen in connection with other malware
Searches for user specific document files

Classification

  • System is w10x64native
  • GalacticShooter (3).exe (PID: 8968 cmdline: C:\Users\user\Desktop\GalacticShooter (3).exe MD5: 83024EA067AB552D39FFDB6E12A30817)
    • GalacticShooter.exe (PID: 4264 cmdline: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe MD5: 93BD0AE322D0293B5AFF20C25B1F71A2)
      • GalacticShooter.exe (PID: 7608 cmdline: "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2 MD5: 93BD0AE322D0293B5AFF20C25B1F71A2)
      • explorer.exe (PID: 4688 cmdline: C:\Windows\Explorer.EXE MD5: 5EA66FF5AE5612F921BC9DA23BAC95F7)
      • GalacticShooter.exe (PID: 6064 cmdline: "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8 MD5: 93BD0AE322D0293B5AFF20C25B1F71A2)
      • GalacticShooter.exe (PID: 284 cmdline: "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --app-path="C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar" --enable-sandbox --lang=en-US --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1 MD5: 93BD0AE322D0293B5AFF20C25B1F71A2)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results
Source: GalacticShooter (3).exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\LICENSE.electron.txtJump to behavior
Source: GalacticShooter (3).exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: libEGL.dll.pdb source: libEGL.dll0.1.dr
Source: Binary string: libGLESv2.dll.pdb source: libGLESv2.dll1.1.dr
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\userJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\Desktop\desktop.iniJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\Desktop\GalacticShooter (3).exeJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\app-64.7zJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\resourcesJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\localesJump to behavior

Networking

barindex
Source: unknownDNS query: name: ipinfo.io
Source: unknownDNS query: name: ipinfo.io
Source: Joe Sandbox ViewIP Address: 162.159.136.232 162.159.136.232
Source: unknownNetwork traffic detected: HTTP traffic on port 49865 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49865
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49864
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49863
Source: unknownNetwork traffic detected: HTTP traffic on port 49863 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49862
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49861
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49860
Source: unknownNetwork traffic detected: HTTP traffic on port 49859 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49873 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49871 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49875 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49860 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49859
Source: unknownNetwork traffic detected: HTTP traffic on port 49868 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49866 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49875
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49874
Source: unknownNetwork traffic detected: HTTP traffic on port 49864 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49873
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49862 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49872
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49871
Source: unknownNetwork traffic detected: HTTP traffic on port 49872 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49874 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49861 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49869
Source: unknownNetwork traffic detected: HTTP traffic on port 49867 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49868
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49867
Source: unknownNetwork traffic detected: HTTP traffic on port 49869 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49866
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.209.26
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.209.26
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.209.26
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1085
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1452
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1452expand_integer_pow_expressionsThe
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1512
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1637
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/1936
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2046
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2152
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2152skip_vs_constant_register_zeroIn
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2162
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2273
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2517
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2727
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2894
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2970
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/2978
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3027
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3045
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3078
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3153
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3205
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3206
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3243
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3246
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3246allow_clear_for_robust_resource_initSome
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3452
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3498
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3502
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3577
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3584
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3623
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3624
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3625
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3682
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3682allowES3OnFL10_0Allow
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3729
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3965
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3970
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/3997
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4214
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4267
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4324
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4339
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4384
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4405
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4428
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4551
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4633
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4646
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4722
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4722forceRobustResourceInitForce-enable
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/482
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4836
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4889
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4901
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/4937
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5007
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5007disable_anisotropic_filteringDisable
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5055
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5061
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5281
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5371
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5375
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5421
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5430
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5469
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5535
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5577
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5658
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5658GPU.ANGLE.DisplayInitializeMSFrontend
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5750
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5750enableCompressingPipelineCacheInThreadPoolEnable
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/5901
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6041
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6041forceInitShaderVariablesForce-enable
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6048
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6141
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6248
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6439
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6651
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6692
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6755
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6878
Source: libGLESv2.dll1.1.drString found in binary or memory: http://anglebug.com/6929
Source: explorer.exe, 00000007.00000000.62243307432.0000000010727000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62241394781.0000000010547000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://cacerts.digicert.com/DigiCertGlobalRootG2.crt0
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://code.google.com/p/angleproject/
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://code.google.com/p/y2038
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1094869
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/110263
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1144207
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1165751
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1165751Disable
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1171371
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1181068
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/1181193
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/308366
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/403957
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/565179
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/642227
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/642605
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/644669
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/650547
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/672380
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/709351
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/797243
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/809422
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/830046
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/849576
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/883276
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/927470
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/941620
Source: libGLESv2.dll1.1.drString found in binary or memory: http://crbug.com/941620allow_translate_uniform_block_to_structured_bufferThere
Source: explorer.exe, 00000007.00000000.62243307432.0000000010727000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62241394781.0000000010547000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://crl3.digicert.com/DigiCertGlobalRootG2.crl07
Source: explorer.exe, 00000007.00000000.62243307432.00000000106EC000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://crl3.digicert.com/Omniroot2
Source: explorer.exe, 00000007.00000000.62238864855.0000000010189000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62232679814.000000000D27F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://crl3.digicert.com/Omniroot2025.crl0
Source: explorer.exe, 00000007.00000000.62243307432.0000000010727000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62241394781.0000000010547000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://crl4.digicert.com/DigiCertGlobalRootG2.crl0
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://developer.android.com/sdk/index.html
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://developer.android.com/tools/extras/support-library.html
Source: libGLESv2.dll1.1.drString found in binary or memory: http://issuetracker.google.com/173636783
Source: libGLESv2.dll1.1.drString found in binary or memory: http://issuetracker.google.com/200067929
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://lcamtuf.coredump.cx/afl/
Source: GalacticShooter (3).exeString found in binary or memory: http://nsis.sf.net/NSIS_ErrorError
Source: explorer.exe, 00000007.00000000.62243307432.0000000010727000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62241394781.0000000010547000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.com0
Source: explorer.exe, 00000007.00000000.62238864855.0000000010189000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62232679814.000000000D27F000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62243307432.00000000106EC000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.com0:
Source: explorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.com1.3.6.1.5.5.7.48.2http://cacerts.digicert.com/DigiCertGlobalRootG2.crt
Source: explorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.com1.3.6.1.5.5.7.48.2http://cacerts.digicert.com/DigiCertGlobalRootG2.crt)
Source: explorer.exe, 00000007.00000000.62232679814.000000000D1BB000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.comhttp://crl3.digicert.com/DigiCertGlobalRootG2.crlhttp://crl4.digicert.com/Di
Source: explorer.exe, 00000007.00000000.62238864855.0000000010192000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.digicert.comhttp://crl3.digicert.com/Omniroot2025.crl
Source: explorer.exe, 00000007.00000000.62238864855.0000000010189000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62208019165.0000000002CCF000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://ocsp.msocsp.com0
Source: explorer.exe, 00000007.00000000.62204168382.0000000000613000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: http://schemas.micr
Source: explorer.exe, 00000007.00000000.62223333320.000000000A040000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62207915691.0000000002B60000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62223578142.000000000A660000.00000002.00000001.00040000.00000000.sdmpString found in binary or memory: http://schemas.micro
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://source.android.com
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://www.apache.org/licenses/
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://www.apache.org/licenses/LICENSE-2.0
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: http://www.foreca.com
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://www.kurims.kyoto-u.ac.jp/~ooura/fft.html
Source: LICENSES.chromium.html0.1.drString found in binary or memory: http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man2/getentropy.2
Source: explorer.exe, 00000007.00000000.62204168382.0000000000613000.00000004.00000020.00020000.00000000.sdmpString found in binary or memory: https://aka.ms/odirmop
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://android.googlesource.com/platform/bionic/
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://android.googlesource.com/platform/frameworks/support
Source: libGLESv2.dll1.1.drString found in binary or memory: https://anglebug.com/4674
Source: libGLESv2.dll1.1.drString found in binary or memory: https://anglebug.com/4849
Source: libGLESv2.dll1.1.drString found in binary or memory: https://anglebug.com/5140
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://aomedia.googlesource.com/aom/
Source: explorer.exe, 00000007.00000000.62232679814.000000000D0C9000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com/
Source: explorer.exe, 00000007.00000000.62232679814.000000000D0C9000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com/X
Source: explorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com/v1/News/Feed/Windows?apikey=qrUeHGGYvVowZJuHA3XaH0uUvg1ZJ0GUZnXk3mxxPF&ocid=wind
Source: explorer.exe, 00000007.00000000.62242843081.00000000106AC000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com/v1/news/Feed/Windows?
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com/v1/news/Feed/Windows?activityId=5696A836803C42E0B53F7BB2770E5342&timeOut=10000&o
Source: explorer.exe, 00000007.00000000.62242843081.00000000106AC000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://api.msn.com:443/v1/news/Feed/Windows?
Source: explorer.exe, 00000007.00000000.62216070421.00000000091F1000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://arc.msn.com
Source: explorer.exe, 00000007.00000000.62238864855.0000000010192000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://assets.msn.com/
Source: explorer.exe, 00000007.00000000.62238864855.0000000010192000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://assets.msn.com/;~
Source: explorer.exe, 00000007.00000000.62243307432.00000000106EC000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62238864855.0000000010181000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://assets.msn.com/serviceak/v1/news/Feed/Windows?apikey=qrUeHGGYvVowZJuHA3XaH0uUvg1ZJ0GUZnXk3mx
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://assets.msn.com/weathermapdata/1/static/svg/72/MostlySunnyDay.svg
Source: libGLESv2.dll1.1.drString found in binary or memory: https://chromium.googlesource.com/angle/angle/
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://chromium.googlesource.com/chromium/src.git/
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/1042393
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/1046462
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/1060012
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/1091824
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/1137851
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/593024
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/593024select_view_in_geometry_shaderThe
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/650547
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/650547call_clear_twiceUsing
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/655534
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/655534use_system_memory_for_constant_buffersCopying
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/705865
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/710443
Source: libGLESv2.dll1.1.drString found in binary or memory: https://crbug.com/811661
Source: data_3.8.drString found in binary or memory: https://csp.withgoogle.com/csp/hosted-libraries-pushers
Source: data_3.8.drString found in binary or memory: https://csp.withgoogle.com/csp/hosted-libraries-pushersCross-Origin-Resource-Policy:
Source: data_3.8.drString found in binary or memory: https://csp.withgoogle.com/csp/report-to/hosted-libraries-pushers
Source: explorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62240767102.000000001034C000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://deff.nelreports.net/api/report?cat=msn
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://developer.android.com/reference/android/util/FloatProperty.html
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://developer.android.com/topic/libraries/architecture/index.html
Source: Web Data.5.drString found in binary or memory: https://duckduckgo.com/ac/?q=
Source: Web Data.5.drString found in binary or memory: https://duckduckgo.com/chrome_newtab
Source: Web Data.5.drString found in binary or memory: https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q=
Source: explorer.exe, 00000007.00000000.62226737352.000000000CB60000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://excel.office.com(
Source: explorer.exe, 00000007.00000000.62232679814.000000000D27F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://excel.office.comRjqhs
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://github.com/abseil/abseil-cpp
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://github.com/acornjs/acorn
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://img-s-msn-com.akamaized.net/tena
Source: libGLESv2.dll1.1.drString found in binary or memory: https://issuetracker.google.com/161903006
Source: libGLESv2.dll1.1.drString found in binary or memory: https://issuetracker.google.com/166809097
Source: libGLESv2.dll1.1.drString found in binary or memory: https://issuetracker.google.com/184850002
Source: libGLESv2.dll1.1.drString found in binary or memory: https://issuetracker.google.com/187425444
Source: libGLESv2.dll1.1.drString found in binary or memory: https://issuetracker.google.com/issues/166475273
Source: explorer.exe, 00000007.00000000.62212830997.0000000004DA5000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://outlook.com
Source: explorer.exe, 00000007.00000000.62226737352.000000000CC19000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://powerpoint.office.comEM
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://raw.githubusercontent.com/GoogleChrome/accessibility-developer-tools/master/dist/js/axs_test
Source: ja.pak.1.dr, th.pak.1.dr, hr.pak0.1.dr, nl.pak0.1.dr, th.pak0.1.dr, am.pak.1.dr, sk.pak.1.dr, bn.pak0.1.dr, te.pak0.1.dr, pl.pak.1.drString found in binary or memory: https://support.google.com/chrome/answer/6098869
Source: Web Data.5.drString found in binary or memory: https://uk.search.yahoo.com/favicon.icohttps://uk.search.yahoo.com/search
Source: Web Data.5.drString found in binary or memory: https://uk.search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command=
Source: explorer.exe, 00000007.00000000.62208019165.0000000002BF9000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://windows.msn.co
Source: explorer.exe, 00000007.00000000.62208019165.0000000002BF9000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://windows.msn.com/shellZ
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://windows.msn.com:443/shell
Source: explorer.exe, 00000007.00000000.62232679814.000000000D27F000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://word.office.comH
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://www.apache.org/licenses/
Source: LICENSES.chromium.html0.1.drString found in binary or memory: https://www.apache.org/licenses/LICENSE-2.0
Source: explorer.exe, 00000007.00000000.62216070421.0000000009391000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62238864855.0000000010189000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.digicert.com/CPS0
Source: Web Data.5.drString found in binary or memory: https://www.google.com/images/branding/product/ico/googleg_lodp.ico
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.msn.com/en-us/news/crime/charges-man-snapped-killed-4-then-left-bodies-in-field/ar-AAOGa
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.msn.com/en-us/news/technology/facebook-oversight-board-reviewing-xcheck-system-for-vips/
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.msn.com/en-us/news/us/texas-gov-abbott-sends-miles-of-cars-along-border-to-deter-migrant
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.msn.com/en-us/tv/celebrity/tarek-el-moussa-tests-positive-for-covid-19-shuts-down-filmin
Source: explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpString found in binary or memory: https://www.msn.com:443/en-us/feed
Source: unknownHTTP traffic detected: POST /dns-query HTTP/1.1Host: chrome.cloudflare-dns.comConnection: keep-aliveContent-Length: 128Accept: application/dns-messageAccept-Language: *User-Agent: ChromeAccept-Encoding: identityContent-Type: application/dns-message
Source: unknownDNS traffic detected: queries for: rentry.co
Source: GalacticShooter (3).exeStatic PE information: RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
Source: C:\Users\user\Desktop\GalacticShooter (3).exeSection loaded: edgegdi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeSection loaded: edgegdi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeSection loaded: edgegdi.dllJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeSection loaded: edgegdi.dllJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess token adjusted: SecurityJump to behavior
Source: GalacticShooter.exe.1.drStatic PE information: Number of sections : 13 > 10
Source: GalacticShooter.exe0.1.drStatic PE information: Number of sections : 13 > 10
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile read: C:\Users\user\Desktop\GalacticShooter (3).exeJump to behavior
Source: GalacticShooter (3).exeStatic PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
Source: C:\Users\user\Desktop\GalacticShooter (3).exeKey opened: HKEY_CURRENT_USER\Software\Policies\Microsoft\Windows\Safer\CodeIdentifiersJump to behavior
Source: unknownProcess created: C:\Users\user\Desktop\GalacticShooter (3).exe C:\Users\user\Desktop\GalacticShooter (3).exe
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --app-path="C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar" --enable-sandbox --lang=en-US --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --app-path="C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar" --enable-sandbox --lang=en-US --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1Jump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeKey value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{1f486a52-3cb1-48fd-8f50-b8dc300d9f9d}\InProcServer32Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile created: C:\Users\user\AppData\Roaming\GalacticShooterJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEB.tmpJump to behavior
Source: classification engineClassification label: mal48.troj.spyw.winEXE@9/193@7/9
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile read: C:\Users\desktop.iniJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile read: C:\Windows\System32\drivers\etc\hostsJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile read: C:\Windows\System32\drivers\etc\hostsJump to behavior
Source: Web Data.5.drBinary or memory string: CREATE TABLE "autofill_profile_edge_extended" ( guid VARCHAR PRIMARY KEY, date_of_birth_day VARCHAR, date_of_birth_month VARCHAR, date_of_birth_year VARCHAR, source INTEGER NOT NULL DEFAULT 0, source_id VARCHAR)[;
Source: GalacticShooter (3).exeStatic file information: File size 64791841 > 1048576
Source: GalacticShooter (3).exeStatic PE information: DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
Source: Binary string: libEGL.dll.pdb source: libEGL.dll0.1.dr
Source: Binary string: libGLESv2.dll.pdb source: libGLESv2.dll1.1.dr
Source: libGLESv2.dll.1.drStatic PE information: section name: .00cfg
Source: libGLESv2.dll.1.drStatic PE information: section name: _RDATA
Source: libEGL.dll.1.drStatic PE information: section name: .00cfg
Source: libEGL.dll.1.drStatic PE information: section name: _RDATA
Source: libGLESv2.dll0.1.drStatic PE information: section name: .00cfg
Source: libGLESv2.dll0.1.drStatic PE information: section name: _RDATA
Source: vk_swiftshader.dll.1.drStatic PE information: section name: .00cfg
Source: vk_swiftshader.dll.1.drStatic PE information: section name: _RDATA
Source: vulkan-1.dll.1.drStatic PE information: section name: .00cfg
Source: vulkan-1.dll.1.drStatic PE information: section name: _RDATA
Source: ffmpeg.dll.1.drStatic PE information: section name: .00cfg
Source: ffmpeg.dll.1.drStatic PE information: section name: _RDATA
Source: GalacticShooter.exe.1.drStatic PE information: section name: .00cfg
Source: GalacticShooter.exe.1.drStatic PE information: section name: .retplne
Source: GalacticShooter.exe.1.drStatic PE information: section name: .rodata
Source: GalacticShooter.exe.1.drStatic PE information: section name: CPADinfo
Source: GalacticShooter.exe.1.drStatic PE information: section name: _RDATA
Source: GalacticShooter.exe.1.drStatic PE information: section name: malloc_h
Source: libEGL.dll0.1.drStatic PE information: section name: .00cfg
Source: libEGL.dll0.1.drStatic PE information: section name: _RDATA
Source: libGLESv2.dll1.1.drStatic PE information: section name: .00cfg
Source: libGLESv2.dll1.1.drStatic PE information: section name: _RDATA
Source: vk_swiftshader.dll0.1.drStatic PE information: section name: .00cfg
Source: vk_swiftshader.dll0.1.drStatic PE information: section name: _RDATA
Source: vulkan-1.dll0.1.drStatic PE information: section name: .00cfg
Source: vulkan-1.dll0.1.drStatic PE information: section name: _RDATA
Source: ffmpeg.dll0.1.drStatic PE information: section name: .00cfg
Source: ffmpeg.dll0.1.drStatic PE information: section name: _RDATA
Source: GalacticShooter.exe0.1.drStatic PE information: section name: .00cfg
Source: GalacticShooter.exe0.1.drStatic PE information: section name: .retplne
Source: GalacticShooter.exe0.1.drStatic PE information: section name: .rodata
Source: GalacticShooter.exe0.1.drStatic PE information: section name: CPADinfo
Source: GalacticShooter.exe0.1.drStatic PE information: section name: _RDATA
Source: GalacticShooter.exe0.1.drStatic PE information: section name: malloc_h
Source: libEGL.dll1.1.drStatic PE information: section name: .00cfg
Source: libEGL.dll1.1.drStatic PE information: section name: _RDATA
Source: 59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.node.5.drStatic PE information: section name: .didat
Source: 59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.node.5.drStatic PE information: section name: .00cfg
Source: 59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.node.5.drStatic PE information: section name: _RDATA
Source: 8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.node.5.drStatic PE information: section name: .didat
Source: 8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.node.5.drStatic PE information: section name: .00cfg
Source: 8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.node.5.drStatic PE information: section name: _RDATA
Source: d3dcompiler_47.dll.1.drStatic PE information: 0xF3329C94 [Sat Apr 18 07:26:12 2099 UTC]
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile created: C:\Users\user\AppData\Local\Temp\59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.nodeJump to dropped file
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile created: C:\Users\user\AppData\Local\Temp\8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\nsis7z.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\d3dcompiler_47.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\resources\elevate.exeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\System.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\vk_swiftshader.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\ffmpeg.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\swiftshader\libGLESv2.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\vulkan-1.dllJump to dropped file
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile created: C:\Users\user\AppData\Local\Temp\59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\ffmpeg.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\GalacticShooter.exeJump to dropped file
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile created: C:\Users\user\AppData\Local\Temp\8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.nodeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\swiftshader\libEGL.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\LICENSE.electron.txtJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Windows\explorer.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess information set: NOGPFAULTERRORBOX | NOOPENFILEERRORBOXJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\00000409Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeKey opened: HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Keyboard Layouts\00000409Jump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\resources\elevate.exeJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeDropped PE file which has not been started: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\vulkan-1.dllJump to dropped file
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile Volume queried: C:\ FullSizeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile Volume queried: C:\Users\user\AppData\Roaming\GalacticShooter\Code Cache\wasm FullSizeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile Volume queried: C:\Users\user\AppData\Roaming\GalacticShooter\Code Cache\js FullSizeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile Volume queried: C:\Users\user\AppData\Roaming\GalacticShooter\blob_storage\2e29a648-fe11-42c0-8537-bbdcff88e81d FullSizeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile Volume queried: C:\Users\user\AppData\Roaming\GalacticShooter\Cache\Cache_Data FullSizeInformationJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\userJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\Desktop\desktop.iniJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\Desktop\GalacticShooter (3).exeJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\app-64.7zJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\resourcesJump to behavior
Source: C:\Users\user\Desktop\GalacticShooter (3).exeFile opened: C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\localesJump to behavior
Source: LICENSES.chromium.html0.1.drBinary or memory string: * Neither the name of the VMware, Inc. nor the names of its contributors
Source: explorer.exe, 00000007.00000000.62241258077.000000001051D000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62243307432.00000000106EC000.00000004.00000001.00020000.00000000.sdmpBinary or memory string: Hyper-V RAW
Source: libGLESv2.dll1.1.drBinary or memory string: (IsLinux() && isVMWare) || (IsAndroid() && isNvidia) || (IsAndroid() && GetAndroidSdkLevel() < 27 && IsAdreno5xxOrOlder(functions)) || (IsAndroid() && IsMaliT8xxOrOlder(functions)) || (IsAndroid() && IsMaliG31OrOlder(functions))
Source: explorer.exe, 00000007.00000000.62240767102.0000000010350000.00000004.00000001.00020000.00000000.sdmpBinary or memory string: Hyper-V RAWPAo
Source: LICENSES.chromium.html0.1.drBinary or memory string: ARE DISCLAIMED. IN NO EVENT SHALL VMWARE, INC. OR CONTRIBUTORS BE LIABLE FOR
Source: LICENSES.chromium.html0.1.drBinary or memory string: Copyright (c) 2011, VMware, Inc.
Source: libGLESv2.dll1.1.drBinary or memory string: Adreno (TM) 418Adreno (TM) 530Adreno (TM) 540GL_EXT_texture_lod_biasARB_draw_buffersGL_ARB_texture_swizzleGL_EXT_texture_swizzleGL_ARB_shader_bit_encodingGL_ARB_shading_language_packingGL_ARB_explicit_attrib_locationGL_ARB_explicit_uniform_locationGL_ARB_texture_gatherGL_ARB_texture_cube_map_arrayGL_ARB_pixel_buffer_objectGL_EXT_pixel_buffer_objectGL_EXT_draw_buffers2GL_ARB_fragment_shaderGL_ARB_shader_texture_lodGL_ARB_shader_viewport_layer_arrayGL_NV_viewport_array2GL_NV_texture_border_clampGL_ARB_robust_buffer_access_behaviorGL_EXT_framebuffer_sRGBGL_ARB_framebuffer_sRGBGL_ARB_gpu_shader5functions->standard == STANDARD_GL_DESKTOP && isAMDfunctions->standard == STANDARD_GL_DESKTOP && isIntelisIntel && !IsSandyBridge(device) && !IsIvyBridge(device) && !IsHaswell(device)IsApple() && isIntelisIntel && IsApple() && IsSkylake(device) && GetMacOSVersion() < OSVersion(10, 13, 2)isIntel || isAMDIsLinux() && functions->standard == STANDARD_GL_DESKTOP && isAMD(IsApple() && functions->standard == STANDARD_GL_DESKTOP) || (IsLinux() && isAMD)IsApple() && functions->standard == STANDARD_GL_DESKTOP && GetMacOSVersion() < OSVersion(10, 11, 0)IsApple() && isIntel && GetMacOSVersion() < OSVersion(10, 12, 0)IsApple() && isAMDIsAndroid() && isQualcommfunctions->standard == STANDARD_GL_DESKTOP && isNvidiaIsApple() || isNvidiafunctions->isAtMostGL(gl::Version(4, 1)) || (functions->standard == STANDARD_GL_DESKTOP && isAMD)isAMD || IsAndroid()IsAndroid() || isNvidia(IsAndroid() && isQualcomm) || (isIntel && IsApple())isAMD || isIntelIsNexus5X(vendor, device)IsAndroid() || (IsWindows() && isIntel)(IsWindows() && (isIntel || isAMD)) || (IsLinux() && isNvidia) || IsIOS() || IsAndroid() || IsAndroidEmulator(functions)IsAndroid() || limitMaxTextureSizeIsAndroid() || (IsApple() && (isIntel || isAMD || isNvidia))limitMaxTextureSizeIsApple()IsAndroid() || isAMD || !functions->hasExtension("GL_KHR_robust_buffer_access_behavior")IsApple() && isIntel && GetMacOSVersion() >= OSVersion(10, 12, 4)IsApple() && isIntel && GetMacOSVersion() < OSVersion(10, 12, 6)IsLinux() || (IsAndroid() && isNvidia) || (IsWindows() && isNvidia) || (IsApple() && functions->standard == STANDARD_GL_ES)IsApple() || (IsLinux() && isAMD)functions->standard == STANDARD_GL_DESKTOP && functions->isAtLeastGL(gl::Version(3, 1)) && !functions->isAtLeastGL(gl::Version(4, 3))features->emulatePrimitiveRestartFixedIndex.enabled && IsApple() && isIntelIsApple() || IsAndroid() || IsWindows()!isIntel && functions->standard == STANDARD_GL_ES && functions->isAtLeastGLES(gl::Version(3, 1)) && functions->hasGLESExtension("GL_EXT_texture_norm16")IsWindows() && isAMDIsLinux() && isAMD && isMesa && mesaVersion < (std::array<int, 3>{19, 3, 5})(IsLinux() && isVMWare) || (IsAndroid() && isNvidia) || (IsAndroid() && GetAndroidSdkLevel() < 27 && IsAdreno5xxOrOlder(functions)) || (IsAndroid() && IsMaliT8xxOrOlder(functions)) || (IsAndroid() && IsMaliG31OrOlder(functions))IsApple() && functions->standard == STANDARD_GL_ES && !(isAMD
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaegaaaaaaaaasaaaaaaaaaayaaaaagaaabaaaaaaaaaagaaaaaaaaaaqaaaaaaaaaaaaaaaoaaaaeaaaaaaaaaabaaaadgaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-us --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --app-path="c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\resources\app.asar" --enable-sandbox --lang=en-us --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=gpu-process --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --gpu-preferences=uaaaaaaaaadgaaayaaaaaaaaaaaaaaaaaabgaaaaaaawaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaegaaaaaaaaasaaaaaaaaaayaaaaagaaabaaaaaaaaaagaaaaaaaaaaqaaaaaaaaaaaaaaaoaaaaeaaaaaaaaaabaaaadgaaaagaaaaaaaaacaaaaaaaaaa= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=utility --utility-sub-type=network.mojom.networkservice --lang=en-us --service-sandbox-type=none --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\galacticshooter.exe" --type=renderer --user-data-dir="c:\users\user\appdata\roaming\galacticshooter" --app-path="c:\users\user\appdata\local\temp\2onwrci5gz6rem4ajlgk3s9hvcy\resources\app.asar" --enable-sandbox --lang=en-us --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=sparerendererforsiteperprocess,winretrievesuggestionsonlyondemand /prefetch:1Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8Jump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeProcess created: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe "C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --app-path="C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar" --enable-sandbox --lang=en-US --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1Jump to behavior
Source: explorer.exe, 00000007.00000000.62206367373.0000000000CE0000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62212789819.00000000043C0000.00000004.00000001.00020000.00000000.sdmpBinary or memory string: Shell_TrayWnd
Source: explorer.exe, 00000007.00000000.62206367373.0000000000CE0000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62204168382.0000000000613000.00000004.00000020.00020000.00000000.sdmpBinary or memory string: Progman
Source: explorer.exe, 00000007.00000000.62206367373.0000000000CE0000.00000002.00000001.00040000.00000000.sdmpBinary or memory string: Progmanlock
Source: explorer.exe, 00000007.00000000.62212830997.0000000004C80000.00000004.00000001.00020000.00000000.sdmpBinary or memory string: Shell_TrayWnd`J
Source: explorer.exe, 00000007.00000000.62206367373.0000000000CE0000.00000002.00000001.00040000.00000000.sdmpBinary or memory string: Program ManagerrJ
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\ VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\segoeui.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\System32\spool\drivers\color\sRGB Color Space Profile.icm VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Login Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Login Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Local State VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Local State VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Local State VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Web Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Web Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\key4.db VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\kzpbmws1.default VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\cookies.sqlite VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Autofill Data.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Autofill Data.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Chrome_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Chrome_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Edge_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Edge_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Firefox-ol7uiqa8.default-release.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Firefox-ol7uiqa8.default-release.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Credit Cards.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Credit Cards.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Passwords.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Passwords.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Autofill Data.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Autofill Data.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Chrome_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Chrome_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Edge_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Edge_Default.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Firefox-ol7uiqa8.default-release.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Cookies\Firefox-ol7uiqa8.default-release.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Credit Cards.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Credit Cards.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Passwords.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user\Passwords.txt VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Temp\epsilon-user.zip VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Local Storage\leveldb\000003.log VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arial.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arial.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALN.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALN.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ariali.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ariali.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNI.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNI.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arialbd.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arialbd.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNB.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNB.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arialbi.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\arialbi.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNBI.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ARIALNBI.TTF VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ariblk.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\Fonts\ariblk.ttf VolumeInformationJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeQueries volume information: C:\Windows\System32\drivers\etc\hosts VolumeInformationJump to behavior

Stealing of Sensitive Information

barindex
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\cookies.sqliteJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\kzpbmws1.defaultJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldbJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\Login DataJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Web DataJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release\key4.dbJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Login DataJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Local Storage\leveldb\000003.logJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Network\Local Storage\leveldbJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\CookiesJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Roaming\Mozilla\Firefox\ProfilesJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeFile opened: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-releaseJump to behavior
Source: C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exeDirectory queried: C:\Users\user\DocumentsJump to behavior
Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionExfiltrationCommand and ControlNetwork EffectsRemote Service EffectsImpact
Valid Accounts1
Command and Scripting Interpreter
1
DLL Side-Loading
12
Process Injection
11
Masquerading
1
OS Credential Dumping
1
Security Software Discovery
Remote Services11
Data from Local System
Exfiltration Over Other Network Medium1
Encrypted Channel
Eavesdrop on Insecure Network CommunicationRemotely Track Device Without AuthorizationModify System Partition
Default AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
DLL Side-Loading
12
Process Injection
LSASS Memory1
Process Discovery
Remote Desktop ProtocolData from Removable MediaExfiltration Over Bluetooth2
Non-Application Layer Protocol
Exploit SS7 to Redirect Phone Calls/SMSRemotely Wipe Data Without AuthorizationDevice Lockout
Domain AccountsAt (Linux)Logon Script (Windows)Logon Script (Windows)1
Timestomp
Security Account Manager1
Remote System Discovery
SMB/Windows Admin SharesData from Network Shared DriveAutomated Exfiltration3
Application Layer Protocol
Exploit SS7 to Track Device LocationObtain Device Cloud BackupsDelete Device Data
Local AccountsAt (Windows)Logon Script (Mac)Logon Script (Mac)1
DLL Side-Loading
NTDS1
System Network Configuration Discovery
Distributed Component Object ModelInput CaptureScheduled TransferProtocol ImpersonationSIM Card SwapCarrier Billing Fraud
Cloud AccountsCronNetwork Logon ScriptNetwork Logon ScriptSoftware PackingLSA Secrets12
File and Directory Discovery
SSHKeyloggingData Transfer Size LimitsFallback ChannelsManipulate Device CommunicationManipulate App Store Rankings or Ratings
Replication Through Removable MediaLaunchdRc.commonRc.commonSteganographyCached Domain Credentials22
System Information Discovery
VNCGUI Input CaptureExfiltration Over C2 ChannelMultiband CommunicationJamming or Denial of ServiceAbuse Accessibility Features
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 847587 Sample: GalacticShooter (3).exe Startdate: 16/04/2023 Architecture: WINDOWS Score: 48 43 rentry.co 2->43 45 ipinfo.io 2->45 47 5 other IPs or domains 2->47 55 May check the online IP address of the machine 2->55 8 GalacticShooter (3).exe 182 2->8         started        signatures3 process4 file5 25 C:\Users\user\AppData\...behaviorgraphalacticShooter.exe, PE32+ 8->25 dropped 27 C:\Users\user\AppData\Local\...\nsis7z.dll, PE32 8->27 dropped 29 C:\Users\user\AppData\Local\...\System.dll, PE32 8->29 dropped 31 16 other files (none is malicious) 8->31 dropped 11 GalacticShooter.exe 49 8->11         started        process6 dnsIp7 49 rentry.co 198.251.88.130, 443, 49859, 49860 PONYNETUS United States 11->49 51 ipinfo.io 34.117.59.81, 443, 49861 GOOGLE-AS-APGoogleAsiaPacificPteLtdSG United States 11->51 53 4 other IPs or domains 11->53 33 8c7ea764-85b7-483d...7ef122d532.tmp.node, PE32+ 11->33 dropped 35 59d1728b-5a1e-4749...ab97ef942a.tmp.node, PE32+ 11->35 dropped 57 Tries to harvest and steal browser information (history, passwords, etc) 11->57 16 GalacticShooter.exe 11 11->16         started        19 explorer.exe 1 11->19 injected 21 GalacticShooter.exe 1 11->21         started        23 GalacticShooter.exe 1 11->23         started        file8 signatures9 process10 dnsIp11 37 dns.quad9.net 149.112.112.112, 443, 49872, 49874 QUAD9-AS-1US United States 16->37 39 chrome.cloudflare-dns.com 104.18.12.173, 443, 49871, 49873 CLOUDFLARENETUS United States 16->39 41 2.23.209.26, 443, 49839 CWVodafoneGroupPLCEU European Union 19->41

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
GalacticShooter (3).exe6%ReversingLabs
GalacticShooter (3).exe3%VirustotalBrowse
SourceDetectionScannerLabelLink
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\d3dcompiler_47.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\ffmpeg.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\libEGL.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\libGLESv2.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\vk_swiftshader.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\vulkan-1.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\59d1728b-5a1e-4749-adbc-a1ab97ef942a.tmp.node0%ReversingLabs
C:\Users\user\AppData\Local\Temp\8c7ea764-85b7-483d-ba01-d27ef122d532.tmp.node0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\GalacticShooter.exe0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\d3dcompiler_47.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\ffmpeg.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\libEGL.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\libGLESv2.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\resources\elevate.exe0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\swiftshader\libEGL.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\swiftshader\libGLESv2.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\vk_swiftshader.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\7z-out\vulkan-1.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\System.dll0%ReversingLabs
C:\Users\user\AppData\Local\Temp\nsj8CEC.tmp\nsis7z.dll0%ReversingLabs
No Antivirus matches
SourceDetectionScannerLabelLink
chrome.cloudflare-dns.com0%VirustotalBrowse
discord.com0%VirustotalBrowse
dns.quad9.net0%VirustotalBrowse
rentry.co1%VirustotalBrowse
SourceDetectionScannerLabelLink
https://powerpoint.office.comEM0%Avira URL Cloudsafe
http://crbug.com/8832760%Avira URL Cloudsafe
https://crbug.com/7058650%Avira URL Cloudsafe
http://crbug.com/11657510%Avira URL Cloudsafe
https://word.office.comH0%Avira URL Cloudsafe
https://anglebug.com/46740%Avira URL Cloudsafe
http://anglebug.com/46330%Avira URL Cloudsafe
https://deff.nelreports.net/api/report?cat=msn0%Avira URL Cloudsafe
http://crbug.com/941620allow_translate_uniform_block_to_structured_bufferThere0%Avira URL Cloudsafe
https://crbug.com/650547call_clear_twiceUsing0%Avira URL Cloudsafe
http://anglebug.com/62480%Avira URL Cloudsafe
http://anglebug.com/4722forceRobustResourceInitForce-enable0%Avira URL Cloudsafe
http://crbug.com/1102630%Avira URL Cloudsafe
https://crbug.com/5930240%Avira URL Cloudsafe
http://anglebug.com/69290%Avira URL Cloudsafe
https://crbug.com/593024select_view_in_geometry_shaderThe0%Avira URL Cloudsafe
http://anglebug.com/5658GPU.ANGLE.DisplayInitializeMSFrontend0%Avira URL Cloudsafe
http://anglebug.com/52810%Avira URL Cloudsafe
https://crbug.com/7104430%Avira URL Cloudsafe
https://crbug.com/11378510%Avira URL Cloudsafe
https://crbug.com/10423930%Avira URL Cloudsafe
http://anglebug.com/30780%Avira URL Cloudsafe
http://anglebug.com/53710%Avira URL Cloudsafe
http://anglebug.com/53750%Avira URL Cloudsafe
http://anglebug.com/39970%Avira URL Cloudsafe
http://anglebug.com/47220%Avira URL Cloudsafe
http://anglebug.com/14520%Avira URL Cloudsafe
http://crbug.com/6426050%Avira URL Cloudsafe
http://crbug.com/1165751Disable0%Avira URL Cloudsafe
https://crbug.com/10600120%Avira URL Cloudsafe
http://anglebug.com/35020%Avira URL Cloudsafe
http://anglebug.com/66920%Avira URL Cloudsafe
http://anglebug.com/36230%Avira URL Cloudsafe
http://anglebug.com/48360%Avira URL Cloudsafe
http://crbug.com/11810680%Avira URL Cloudsafe
http://anglebug.com/50070%Avira URL Cloudsafe
http://anglebug.com/28940%Avira URL Cloudsafe
http://anglebug.com/36250%Avira URL Cloudsafe
http://anglebug.com/36240%Avira URL Cloudsafe
http://anglebug.com/5750enableCompressingPipelineCacheInThreadPoolEnable0%Avira URL Cloudsafe
http://schemas.micro0%Avira URL Cloudsafe
http://anglebug.com/43840%Avira URL Cloudsafe
http://crbug.com/11811930%Avira URL Cloudsafe
http://anglebug.com/30450%Avira URL Cloudsafe
http://anglebug.com/5007disable_anisotropic_filteringDisable0%Avira URL Cloudsafe
http://anglebug.com/39700%Avira URL Cloudsafe
http://anglebug.com/42670%Avira URL Cloudsafe
http://crbug.com/3083660%Avira URL Cloudsafe
https://excel.office.com(0%Avira URL Cloudsafe
http://anglebug.com/4820%Avira URL Cloudsafe
http://anglebug.com/59010%Avira URL Cloudsafe
http://anglebug.com/39650%Avira URL Cloudsafe
http://anglebug.com/64390%Avira URL Cloudsafe
http://anglebug.com/54690%Avira URL Cloudsafe
http://lcamtuf.coredump.cx/afl/0%Avira URL Cloudsafe
http://anglebug.com/37290%Avira URL Cloudsafe
http://anglebug.com/49370%Avira URL Cloudsafe
http://crbug.com/8300460%Avira URL Cloudsafe
http://anglebug.com/31530%Avira URL Cloudsafe
http://anglebug.com/25170%Avira URL Cloudsafe
http://crbug.com/6723800%Avira URL Cloudsafe
http://crbug.com/10948690%Avira URL Cloudsafe
http://crbug.com/8495760%Avira URL Cloudsafe
https://csp.withgoogle.com/csp/hosted-libraries-pushersCross-Origin-Resource-Policy:0%Avira URL Cloudsafe
https://crbug.com/8116610%Avira URL Cloudsafe
http://anglebug.com/55770%Avira URL Cloudsafe
https://crbug.com/10918240%Avira URL Cloudsafe
http://anglebug.com/10850%Avira URL Cloudsafe
http://anglebug.com/66510%Avira URL Cloudsafe
http://anglebug.com/29700%Avira URL Cloudsafe
http://anglebug.com/30270%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
chrome.cloudflare-dns.com
104.18.12.173
truefalseunknown
discord.com
162.159.128.233
truefalseunknown
ipinfo.io
34.117.59.81
truefalse
    high
    rentry.co
    198.251.88.130
    truefalseunknown
    dns.quad9.net
    149.112.112.112
    truefalseunknown
    cdn.discordapp.com
    162.159.130.233
    truefalse
      high
      canary.discord.com
      162.159.136.232
      truefalse
        unknown
        NameSourceMaliciousAntivirus DetectionReputation
        https://anglebug.com/4674libGLESv2.dll1.1.drfalse
        • Avira URL Cloud: safe
        unknown
        https://duckduckgo.com/chrome_newtabWeb Data.5.drfalse
          high
          https://uk.search.yahoo.com/favicon.icohttps://uk.search.yahoo.com/searchWeb Data.5.drfalse
            high
            http://crbug.com/941620allow_translate_uniform_block_to_structured_bufferTherelibGLESv2.dll1.1.drfalse
            • Avira URL Cloud: safe
            unknown
            https://chromium.googlesource.com/chromium/src.git/LICENSES.chromium.html0.1.drfalse
              high
              https://duckduckgo.com/ac/?q=Web Data.5.drfalse
                high
                https://crbug.com/650547call_clear_twiceUsinglibGLESv2.dll1.1.drfalse
                • Avira URL Cloud: safe
                unknown
                https://github.com/abseil/abseil-cppLICENSES.chromium.html0.1.drfalse
                  high
                  https://support.google.com/chrome/answer/6098869ja.pak.1.dr, th.pak.1.dr, hr.pak0.1.dr, nl.pak0.1.dr, th.pak0.1.dr, am.pak.1.dr, sk.pak.1.dr, bn.pak0.1.dr, te.pak0.1.dr, pl.pak.1.drfalse
                    high
                    https://api.msn.com:443/v1/news/Feed/Windows?explorer.exe, 00000007.00000000.62242843081.00000000106AC000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpfalse
                      high
                      http://anglebug.com/4633libGLESv2.dll1.1.drfalse
                      • Avira URL Cloud: safe
                      unknown
                      https://aka.ms/odirmopexplorer.exe, 00000007.00000000.62204168382.0000000000613000.00000004.00000020.00020000.00000000.sdmpfalse
                        high
                        http://code.google.com/p/angleproject/LICENSES.chromium.html0.1.drfalse
                          high
                          https://assets.msn.com/explorer.exe, 00000007.00000000.62238864855.0000000010192000.00000004.00000001.00020000.00000000.sdmpfalse
                            high
                            https://deff.nelreports.net/api/report?cat=msnexplorer.exe, 00000007.00000000.62243307432.000000001070F000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62240767102.000000001034C000.00000004.00000001.00020000.00000000.sdmpfalse
                            • Avira URL Cloud: safe
                            unknown
                            https://powerpoint.office.comEMexplorer.exe, 00000007.00000000.62226737352.000000000CC19000.00000004.00000001.00020000.00000000.sdmpfalse
                            • Avira URL Cloud: safe
                            unknown
                            http://crbug.com/883276libGLESv2.dll1.1.drfalse
                            • Avira URL Cloud: safe
                            unknown
                            https://word.office.comHexplorer.exe, 00000007.00000000.62232679814.000000000D27F000.00000004.00000001.00020000.00000000.sdmpfalse
                            • Avira URL Cloud: safe
                            unknown
                            https://www.apache.org/licenses/LICENSE-2.0LICENSES.chromium.html0.1.drfalse
                              high
                              https://www.msn.com/en-us/news/us/texas-gov-abbott-sends-miles-of-cars-along-border-to-deter-migrantexplorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpfalse
                                high
                                http://crbug.com/1165751libGLESv2.dll1.1.drfalse
                                • Avira URL Cloud: safe
                                unknown
                                https://uk.search.yahoo.com/sugg/chrome?output=fxjson&appid=crmas&command=Web Data.5.drfalse
                                  high
                                  https://crbug.com/705865libGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  http://crbug.com/110263libGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  http://anglebug.com/6248libGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  http://anglebug.com/4722forceRobustResourceInitForce-enablelibGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  http://anglebug.com/6929libGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  http://anglebug.com/5281libGLESv2.dll1.1.drfalse
                                  • Avira URL Cloud: safe
                                  unknown
                                  https://assets.msn.com/weathermapdata/1/static/svg/72/MostlySunnyDay.svgexplorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpfalse
                                    high
                                    https://crbug.com/593024select_view_in_geometry_shaderThelibGLESv2.dll1.1.drfalse
                                    • Avira URL Cloud: safe
                                    unknown
                                    https://aomedia.googlesource.com/aom/LICENSES.chromium.html0.1.drfalse
                                      high
                                      https://crbug.com/593024libGLESv2.dll1.1.drfalse
                                      • Avira URL Cloud: safe
                                      unknown
                                      https://crbug.com/1137851libGLESv2.dll1.1.drfalse
                                      • Avira URL Cloud: safe
                                      unknown
                                      https://duckduckgo.com/favicon.icohttps://duckduckgo.com/?q=Web Data.5.drfalse
                                        high
                                        https://www.apache.org/licenses/LICENSES.chromium.html0.1.drfalse
                                          high
                                          https://issuetracker.google.com/161903006libGLESv2.dll1.1.drfalse
                                            high
                                            https://crbug.com/710443libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/5658GPU.ANGLE.DisplayInitializeMSFrontendlibGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            https://crbug.com/1042393libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            https://crbug.com/1060012libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/3078libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/5375libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/5371libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/3997libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/4722libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://crbug.com/642605libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://anglebug.com/1452libGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://crbug.com/1165751DisablelibGLESv2.dll1.1.drfalse
                                            • Avira URL Cloud: safe
                                            unknown
                                            http://source.android.comLICENSES.chromium.html0.1.drfalse
                                              high
                                              http://anglebug.com/6692libGLESv2.dll1.1.drfalse
                                              • Avira URL Cloud: safe
                                              unknown
                                              http://code.google.com/p/y2038LICENSES.chromium.html0.1.drfalse
                                                high
                                                http://anglebug.com/3502libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/3623libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/3625libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/3624libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/5007libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://crbug.com/1181068libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/2894libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                http://anglebug.com/4836libGLESv2.dll1.1.drfalse
                                                • Avira URL Cloud: safe
                                                unknown
                                                https://issuetracker.google.com/issues/166475273libGLESv2.dll1.1.drfalse
                                                  high
                                                  http://anglebug.com/5750enableCompressingPipelineCacheInThreadPoolEnablelibGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://schemas.microexplorer.exe, 00000007.00000000.62223333320.000000000A040000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62207915691.0000000002B60000.00000002.00000001.00040000.00000000.sdmp, explorer.exe, 00000007.00000000.62223578142.000000000A660000.00000002.00000001.00040000.00000000.sdmpfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/4384libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/3970libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/4267libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/5007disable_anisotropic_filteringDisablelibGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://crbug.com/1181193libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/482libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  http://anglebug.com/3045libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  https://excel.office.com(explorer.exe, 00000007.00000000.62226737352.000000000CB60000.00000004.00000001.00020000.00000000.sdmpfalse
                                                  • Avira URL Cloud: safe
                                                  low
                                                  http://crbug.com/308366libGLESv2.dll1.1.drfalse
                                                  • Avira URL Cloud: safe
                                                  unknown
                                                  https://www.google.com/images/branding/product/ico/googleg_lodp.icoWeb Data.5.drfalse
                                                    high
                                                    http://anglebug.com/5901libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/3965libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/6439libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/5469libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/3729libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://crbug.com/830046libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/2517libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://anglebug.com/4937libGLESv2.dll1.1.drfalse
                                                    • Avira URL Cloud: safe
                                                    unknown
                                                    http://www.foreca.comexplorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpfalse
                                                      high
                                                      https://issuetracker.google.com/166809097libGLESv2.dll1.1.drfalse
                                                        high
                                                        http://issuetracker.google.com/200067929libGLESv2.dll1.1.drfalse
                                                          high
                                                          http://lcamtuf.coredump.cx/afl/LICENSES.chromium.html0.1.drfalse
                                                          • Avira URL Cloud: safe
                                                          unknown
                                                          http://anglebug.com/3153libGLESv2.dll1.1.drfalse
                                                          • Avira URL Cloud: safe
                                                          unknown
                                                          http://crbug.com/1094869libGLESv2.dll1.1.drfalse
                                                          • Avira URL Cloud: safe
                                                          unknown
                                                          http://crbug.com/672380libGLESv2.dll1.1.drfalse
                                                          • Avira URL Cloud: safe
                                                          unknown
                                                          http://crbug.com/849576libGLESv2.dll1.1.drfalse
                                                          • Avira URL Cloud: safe
                                                          unknown
                                                          http://developer.android.com/sdk/index.htmlLICENSES.chromium.html0.1.drfalse
                                                            high
                                                            https://assets.msn.com/serviceak/v1/news/Feed/Windows?apikey=qrUeHGGYvVowZJuHA3XaH0uUvg1ZJ0GUZnXk3mxexplorer.exe, 00000007.00000000.62243307432.00000000106EC000.00000004.00000001.00020000.00000000.sdmp, explorer.exe, 00000007.00000000.62238864855.0000000010181000.00000004.00000001.00020000.00000000.sdmpfalse
                                                              high
                                                              http://anglebug.com/5577libGLESv2.dll1.1.drfalse
                                                              • Avira URL Cloud: safe
                                                              unknown
                                                              https://csp.withgoogle.com/csp/hosted-libraries-pushersCross-Origin-Resource-Policy:data_3.8.drfalse
                                                              • Avira URL Cloud: safe
                                                              unknown
                                                              https://crbug.com/811661libGLESv2.dll1.1.drfalse
                                                              • Avira URL Cloud: safe
                                                              unknown
                                                              https://www.msn.com:443/en-us/feedexplorer.exe, 00000007.00000000.62212830997.0000000004D5B000.00000004.00000001.00020000.00000000.sdmpfalse
                                                                high
                                                                http://developer.android.com/tools/extras/support-library.htmlLICENSES.chromium.html0.1.drfalse
                                                                  high
                                                                  https://crbug.com/1091824libGLESv2.dll1.1.drfalse
                                                                  • Avira URL Cloud: safe
                                                                  unknown
                                                                  http://anglebug.com/1085libGLESv2.dll1.1.drfalse
                                                                  • Avira URL Cloud: safe
                                                                  unknown
                                                                  http://anglebug.com/6651libGLESv2.dll1.1.drfalse
                                                                  • Avira URL Cloud: safe
                                                                  unknown
                                                                  http://anglebug.com/2970libGLESv2.dll1.1.drfalse
                                                                  • Avira URL Cloud: safe
                                                                  unknown
                                                                  http://anglebug.com/3027libGLESv2.dll1.1.drfalse
                                                                  • Avira URL Cloud: safe
                                                                  unknown
                                                                  • No. of IPs < 25%
                                                                  • 25% < No. of IPs < 50%
                                                                  • 50% < No. of IPs < 75%
                                                                  • 75% < No. of IPs
                                                                  IPDomainCountryFlagASNASN NameMalicious
                                                                  149.112.112.112
                                                                  dns.quad9.netUnited States
                                                                  19281QUAD9-AS-1USfalse
                                                                  162.159.136.232
                                                                  canary.discord.comUnited States
                                                                  13335CLOUDFLARENETUSfalse
                                                                  162.159.130.233
                                                                  cdn.discordapp.comUnited States
                                                                  13335CLOUDFLARENETUSfalse
                                                                  198.251.88.130
                                                                  rentry.coUnited States
                                                                  53667PONYNETUSfalse
                                                                  34.117.59.81
                                                                  ipinfo.ioUnited States
                                                                  139070GOOGLE-AS-APGoogleAsiaPacificPteLtdSGfalse
                                                                  162.159.128.233
                                                                  discord.comUnited States
                                                                  13335CLOUDFLARENETUSfalse
                                                                  104.18.12.173
                                                                  chrome.cloudflare-dns.comUnited States
                                                                  13335CLOUDFLARENETUSfalse
                                                                  2.23.209.26
                                                                  unknownEuropean Union
                                                                  1273CWVodafoneGroupPLCEUfalse
                                                                  IP
                                                                  192.168.11.1
                                                                  Joe Sandbox Version:37.0.0 Beryl
                                                                  Analysis ID:847587
                                                                  Start date and time:2023-04-16 15:15:10 +02:00
                                                                  Joe Sandbox Product:CloudBasic
                                                                  Overall analysis duration:0h 9m 55s
                                                                  Hypervisor based Inspection enabled:false
                                                                  Report type:full
                                                                  Cookbook file name:default.jbs
                                                                  Analysis system description:Windows 10 64 bit 20H2 Native physical Machine for testing VM-aware malware (Office 2019, IE 11, Chrome 93, Firefox 91, Adobe Reader DC 21, Java 8 Update 301
                                                                  Number of analysed new started processes analysed:10
                                                                  Number of new started drivers analysed:0
                                                                  Number of existing processes analysed:0
                                                                  Number of existing drivers analysed:0
                                                                  Number of injected processes analysed:1
                                                                  Technologies:
                                                                  • HCA enabled
                                                                  • EGA enabled
                                                                  • HDC enabled
                                                                  • AMSI enabled
                                                                  Analysis Mode:default
                                                                  Analysis stop reason:Timeout
                                                                  Sample file name:GalacticShooter (3).exe
                                                                  Detection:MAL
                                                                  Classification:mal48.troj.spyw.winEXE@9/193@7/9
                                                                  EGA Information:Failed
                                                                  HDC Information:Failed
                                                                  HCA Information:
                                                                  • Successful, ratio: 100%
                                                                  • Number of executed functions: 0
                                                                  • Number of non-executed functions: 0
                                                                  Cookbook Comments:
                                                                  • Found application associated with file extension: .exe
                                                                  • Exclude process from analysis (whitelisted): dllhost.exe, CompPkgSrv.exe, backgroundTaskHost.exe
                                                                  • Excluded IPs from analysis (whitelisted): 40.126.31.69, 20.190.159.71, 40.126.31.71, 20.190.159.2, 40.126.31.67, 40.126.31.73, 20.190.159.68, 20.190.159.64, 172.217.168.67, 142.250.184.195, 142.250.203.99, 142.250.186.35, 142.250.181.234
                                                                  • Excluded domains from analysis (whitelisted): prdv6a.aadg.msidentity.com, wdcpalt.microsoft.com, client.wns.windows.com, login.live.com, ajax.googleapis.com, www.tm.v6.a.prd.aadg.akadns.net, wdcp.microsoft.com, www.gstatic.com, login.msa.msidentity.com, www.tm.lg.prod.aadmsa.trafficmanager.net
                                                                  • Report size exceeded maximum capacity and may have missing behavior information.
                                                                  • Report size getting too big, too many NtAllocateVirtualMemory calls found.
                                                                  • Report size getting too big, too many NtOpenKeyEx calls found.
                                                                  • Report size getting too big, too many NtProtectVirtualMemory calls found.
                                                                  • Report size getting too big, too many NtQueryAttributesFile calls found.
                                                                  • Report size getting too big, too many NtQueryValueKey calls found.
                                                                  • Report size getting too big, too many NtQueryVolumeInformationFile calls found.
                                                                  TimeTypeDescription
                                                                  15:18:00API Interceptor604x Sleep call for process: explorer.exe modified
                                                                  MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                  149.112.112.112Setup.exeGet hashmaliciousUnknownBrowse
                                                                    162.159.136.232RFQ.PDF.jsGet hashmaliciousVector StealerBrowse
                                                                      SecuriteInfo.com.Trojan.NSISX.Spy.Gen.24.7747.12321.exeGet hashmaliciousAgentTeslaBrowse
                                                                        Scan-Docs-ord09334rn-pdf.jsGet hashmaliciousAgentTeslaBrowse
                                                                          v3NesZhLpp.exeGet hashmaliciousDiscord Token StealerBrowse
                                                                            ffdh07v2cv.exeGet hashmaliciousAgentTeslaBrowse
                                                                              SecuriteInfo.com.Win64.PWSX-gen.29890.2280.exeGet hashmaliciousVector StealerBrowse
                                                                                masked_fixxxx.exeGet hashmaliciousDiscord Token StealerBrowse
                                                                                  HhZ2FJLhRe.exeGet hashmaliciousUnknownBrowse
                                                                                    PDA_REQUEST_DISCHARGE_55,000_MT_GRAIN_IN_BULK_pdf.exeGet hashmaliciousVector StealerBrowse
                                                                                      main.exeGet hashmaliciousDiscord Token StealerBrowse
                                                                                        e-dekont-20230316B.exeGet hashmaliciousAgentTeslaBrowse
                                                                                          PTT_PAKET#U0130N#U0130Z#U0130_TESL#U0130M_ED#U0130YOR.exeGet hashmaliciousAgentTesla, zgRATBrowse
                                                                                            DISCHARGING 42,000 MT CLINKER IN BULK.PDF.jsGet hashmaliciousVector StealerBrowse
                                                                                              choo.exeGet hashmaliciousVector StealerBrowse
                                                                                                Para_Transferi_Bilgilendirmesi1.exeGet hashmaliciousAgentTeslaBrowse
                                                                                                  gunzipped.exeGet hashmaliciousAgentTeslaBrowse
                                                                                                    DHL_Receipt_AWB#290045829822.exeGet hashmaliciousAgentTesla, zgRATBrowse
                                                                                                      Order_Requirement_6000025581-Pdf.com.exeGet hashmaliciousAgentTeslaBrowse
                                                                                                        PaymentXinstruction.exeGet hashmaliciousAgentTesla, zgRATBrowse
                                                                                                          DJKyf11jbu.exeGet hashmaliciousVector StealerBrowse
                                                                                                            MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                            chrome.cloudflare-dns.comSetup.exeGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            https://paper.li/41i0IyhsDU2LHUTTqmDaP/story/ap-ausdredge-VBjAsEzkfIUV7miNpzaCiGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 104.18.42.171
                                                                                                            http://first-dating.top/js/push/p.js?u=ra9pd06&o=911nfyq&t=66&v=2Get hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            Fax_Doc.htmGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 172.64.145.85
                                                                                                            Ferdium-win-Portable-6.0.0-x64.exeGet hashmaliciousUnknownBrowse
                                                                                                            • 172.64.145.85
                                                                                                            Construction Drawingcouncil@cityofparramatta.nsw.gov.au--830962-df.htmGet hashmaliciousCaptcha Phish, PhisherBrowse
                                                                                                            • 104.18.42.171
                                                                                                            http://107.172.76.136/topp.exeGet hashmaliciousSnake KeyloggerBrowse
                                                                                                            • 104.18.42.171
                                                                                                            Secured_angela.johnson_Audio_Message.htmGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            ACH_WIRE_REMITTANCE.xlsxGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 104.18.42.171
                                                                                                            INV#48390122.docxGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            GalacticFever.exeGet hashmaliciousUnknownBrowse
                                                                                                            • 172.64.145.85
                                                                                                            https://nhs-sharepoint.simplesite.com/Get hashmaliciousHTMLPhisherBrowse
                                                                                                            • 172.64.145.85
                                                                                                            https://theproduct-4you.com/us/sgaq/goketogum-onl1?bhu=spkfL6hnkZo2Z5xGxgK1Hn2fuSAE7PhhBjqZs4Get hashmaliciousGRQ ScamBrowse
                                                                                                            • 172.64.145.85
                                                                                                            #U043e#U0440#U043a#U043e#U0441#U0442#U0430#U043d#U0432#U0440#U0430#U0431#U043e#U0442#U0435.xlsxGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            orkostansocialclubfrom09.06.xlsxGet hashmaliciousUnknownBrowse
                                                                                                            • 172.64.145.85
                                                                                                            Paid EFT Invoices.xlsxGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            http://timetogof.at/vento/6523.exeGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.42.171
                                                                                                            https://esca4.app.goo.gl/xdBo2PZ5GZufaehJ6Get hashmaliciousUnknownBrowse
                                                                                                            • 172.64.145.85
                                                                                                            https://raptorcapr.site/Alarm-Com-Api-DocumentationGet hashmaliciousPhisherBrowse
                                                                                                            • 172.64.145.85
                                                                                                            Allegato documento d'ordine.htmlGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 172.64.145.85
                                                                                                            discord.comPDA.PDF.jsGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.137.232
                                                                                                            choo.bin.exeGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.128.233
                                                                                                            RFQ.PDF.jsGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.136.232
                                                                                                            obfuscated.jsGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.137.232
                                                                                                            Creal.exeGet hashmaliciousCreal StealerBrowse
                                                                                                            • 162.159.137.232
                                                                                                            aHESmFfQeP.exeGet hashmaliciousDCRatBrowse
                                                                                                            • 162.159.128.233
                                                                                                            Znci6Yzgb2.exeGet hashmaliciousDCRatBrowse
                                                                                                            • 162.159.138.232
                                                                                                            YcI9sKzcid.exeGet hashmaliciousBabadedaBrowse
                                                                                                            • 162.159.128.233
                                                                                                            SecuriteInfo.com.Trojan.NSISX.Spy.Gen.24.7747.12321.exeGet hashmaliciousAgentTeslaBrowse
                                                                                                            • 162.159.135.232
                                                                                                            Scan-Docs-ord09334rn-pdf.jsGet hashmaliciousAgentTeslaBrowse
                                                                                                            • 162.159.128.233
                                                                                                            v3NesZhLpp.exeGet hashmaliciousDiscord Token StealerBrowse
                                                                                                            • 162.159.136.232
                                                                                                            Dekont-c,pdf.exeGet hashmaliciousAgentTesla, zgRATBrowse
                                                                                                            • 162.159.137.232
                                                                                                            ffdh07v2cv.exeGet hashmaliciousAgentTeslaBrowse
                                                                                                            • 162.159.136.232
                                                                                                            plM3DwAY4v.exeGet hashmaliciousStealeriumBrowse
                                                                                                            • 162.159.138.232
                                                                                                            hDgR1Ix672.exeGet hashmaliciousStealeriumBrowse
                                                                                                            • 162.159.128.233
                                                                                                            DiscordUpdater.exeGet hashmaliciousClipboard Hijacker, StealeriumBrowse
                                                                                                            • 162.159.128.233
                                                                                                            SecuriteInfo.com.Win64.PWSX-gen.29890.2280.exeGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.136.232
                                                                                                            SecuriteInfo.com.Win64.PWSX-gen.3187.26224.exeGet hashmaliciousVector StealerBrowse
                                                                                                            • 162.159.138.232
                                                                                                            r4Q6Ejjl24Get hashmaliciousUnknownBrowse
                                                                                                            • 162.159.128.233
                                                                                                            MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                            QUAD9-AS-1USphish_alert_iocp_v1.4.48.emlGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            1861.emlGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            EXTERNAL RE RE Media Player issues Work Order #30983.msgGet hashmaliciousQbotBrowse
                                                                                                            • 9.9.9.9
                                                                                                            OriginalMessage.txt.msgGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            Paystub.htmGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            EXTERNAL RE Correction to DDTDDS Streaming Player quote.msgGet hashmaliciousQbotBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://soap2day.acGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://www-businesstoday-in.cdn.ampproject.org/c/s/mentallistener.or.jp/IV/YWNoYXRzbXBAcm9xdWV0dGUuY29tGet hashmaliciousPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            http://url6688.vip/Get hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            (MT-103-USD)---717.htmGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            642670f758f2a350594b36fb.emlGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            KKveTTgaAAsecNNaaaa.x86.elfGet hashmaliciousUnknownBrowse
                                                                                                            • 149.112.127.186
                                                                                                            https://vuzigalami.weebly.com:443/uploads/1/3/5/9/135960382/duwemumi.pdfGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://bs.serving-sys.com/Serving/adServer.bs?cn=brd&PluID=0&Pos=04102920&EyeblasterID=1086486580&clk=1&ctick=10042010&rtu=https%3A%2F%2Frwcell.com%2FpF4ztF4zrd07nW1as0h3na51flanW1ing0h3d07nF4ztGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://uxfol.io:443/fdcca61bGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://us02web.zoom.us/j/82555655717?pwd=Y2Y2ZzYyYURCMmY0c3JIcGUvWHpDQT09Get hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            [EXT](1) New Invoice Request.emlGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            message_919235_744927764.shtmlGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            https://bit.ly/3ZmVOfoGet hashmaliciousUnknownBrowse
                                                                                                            • 9.9.9.9
                                                                                                            http://mhootyw.karting-hirson.net/Taylor-Wessing.html#e=wayne.algar@decisioninsightgroup.co.ukGet hashmaliciousHTMLPhisherBrowse
                                                                                                            • 9.9.9.9
                                                                                                            CLOUDFLARENETUShttps://verfmogz.ffm.to/removeatGet hashmaliciousUnknownBrowse
                                                                                                            • 104.18.24.196
                                                                                                            ci2E8Tsgjx.elfGet hashmaliciousMiraiBrowse
                                                                                                            • 104.30.121.84
                                                                                                            Orden_de_compra_(P.O-4220986)_Diesel_OMT.exeGet hashmaliciousLokibotBrowse
                                                                                                            • 104.21.14.55
                                                                                                            LRXUsX7M4x.elfGet hashmaliciousMiraiBrowse
                                                                                                            • 8.47.233.200
                                                                                                            PO_UYTTFCFGV.xlsx.exeGet hashmaliciousFormBookBrowse
                                                                                                            • 188.114.96.7
                                                                                                            file.exeGet hashmaliciousAmadey, Djvu, Fabookie, Laplas Clipper, SmokeLoaderBrowse
                                                                                                            • 188.114.96.7
                                                                                                            file.exeGet hashmaliciousAmadey, Djvu, Fabookie, Laplas Clipper, SmokeLoaderBrowse
                                                                                                            • 188.114.96.7
                                                                                                            setup.exeGet hashmaliciousAmadey, CryptOne, DanaBot, Djvu, SmokeLoader, VidarBrowse
                                                                                                            • 188.114.96.7
                                                                                                            setup.exeGet hashmaliciousAmadey, Djvu, Fabookie, SmokeLoader, VidarBrowse
                                                                                                            • 188.114.97.7
                                                                                                            setup.exeGet hashmaliciousAmadey, Djvu, Fabookie, Laplas Clipper, SmokeLoaderBrowse
                                                                                                            • 188.114.96.7
                                                                                                            setup.exeGet hashmaliciousXmrigBrowse
                                                                                                            • 104.20.67.143
                                                                                                            file.exeGet hashmaliciousAmadey, Djvu, SmokeLoaderBrowse
                                                                                                            • 188.114.96.7
                                                                                                            txSu22RMwo.exeGet hashmaliciousRedLineBrowse
                                                                                                            • 172.67.34.170
                                                                                                            m9yVBGQjG1.xlsxGet hashmaliciousHidden Macro 4.0, EmotetBrowse
                                                                                                            • 104.21.29.205
                                                                                                            AgmQcxN8Lf.exeGet hashmaliciousSnake KeyloggerBrowse
                                                                                                            • 188.114.96.7
                                                                                                            https://email.mail1.onesignal.os.tc/c/eJwUzz2uozAQAODT4G6Qf8ZmXFBsCqq9w2o89iwoJCDiSC-3f0r_NR-f57-tziicStUKZG0BnKhBieogBCyFIqtHNHVOGHNV02aXyEWXnCezzlONVFkDsyuc1frmi7ZIiVpLafJmmyefS8rWgToqgBwEMlOEkrIKi0ryadxb71cb0O6H8L4er272ee39fA3hz-CXwS_y7n3cP4Nffqa_9XZbzPPom27CfTue34kE9o1KBRsnBaScgIIKOB-tuiLJEppz50-7vtzaUF2KETK6CZCQIFcJwIRFIlanQc01v94Xf8Y7rxc_-Dmgrdv_rb-v-yjHY-zXbwAAAP__0aBhnAGet hashmaliciousUnknownBrowse
                                                                                                            • 172.67.8.238
                                                                                                            file.exeGet hashmaliciousClipboard Hijacker, PrivateLoaderBrowse
                                                                                                            • 188.114.96.7
                                                                                                            vH2hK89wai.exeGet hashmaliciousMinerDownloader, Laplas Clipper, RedLine, XmrigBrowse
                                                                                                            • 104.20.67.143
                                                                                                            file.exeGet hashmaliciousRedLine, XmrigBrowse
                                                                                                            • 172.67.34.170
                                                                                                            No context
                                                                                                            MatchAssociated Sample Name / URLSHA 256DetectionThreat NameLinkContext
                                                                                                            C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\d3dcompiler_47.dllOctoparse Setup 8.5.8.exeGet hashmaliciousUnknownBrowse
                                                                                                              https://api-functions.prod.a.symless.com/download-log?synergyVersion=3.0.66.22-beta&operatingSystem=Windows&architecture=64-bit&downloadUrl=https%3A%2F%2Frc.symless.com%2Fsynergy3%2Fv3.0.66.22-beta%2Fsynergy-win_x64-v3.0.66.22-beta.msi&userId=886628Get hashmaliciousUnknownBrowse
                                                                                                                https://www.getsnotes.com/en/app/download.php?file=downloadGet hashmaliciousUnknownBrowse
                                                                                                                  https://vtsamples.commondatastorage.googleapis.com/c33d082a5604c2e121a44099ba5498ebe49b7843b2a382c07acee4edd9922475?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1664993535&Signature=pEKeGux02siJiTNE6GLSntdWKmh8ukBimtrwuhFdWhAeiSarfyVtszkBGIe%2BI6ii0OJ2%2BNio4or1%0A%2Ffror2J2OQ49bmq3adiJ1zYFBCPeNg%2FqaxMl%2FBHmkqX4cnFNhL76l99BL7%2F9gUwF2waZzVQbtfMk%0AwQ7E%2BykBvboedImzqE6b9bvkTiHrMeW62Ur5ppb7%2B9OjoQq7iYHZiZAEpyqFuV94bfoz%2Fl4GZzMP%0Av%2F2cH5w9UohSYcLgt9c4ho6XZltXyUJl9DzxyED2hM4%2BcFP%2BUmb5Sksp9hx0UL2WaNATnCB2rBdR%0AtyYcr7tpnB%2BqALJEDajkcVsO8srOrb%2F%2B5lM5xw%3D%3D&response-content-disposition=attachment%3B%20filename%3D%22c33d082a5604c2e121a44099ba5498ebe49b7843b2a382c07acee4edd9922475%22&response-content-type=application%2Foctet-stream;Get hashmaliciousUnknownBrowse
                                                                                                                    https://vtsamples.commondatastorage.googleapis.com/c33d082a5604c2e121a44099ba5498ebe49b7843b2a382c07acee4edd9922475?GoogleAccessId=758681729565-rc7fgq07icj8c9dm2gi34a4cckv235v1@developer.gserviceaccount.com&Expires=1664993535&Signature=pEKeGux02siJiTNE6GLSntdWKmh8ukBimtrwuhFdWhAeiSarfyVtszkBGIe%2BI6ii0OJ2%2BNio4or1%0A%2Ffror2J2OQ49bmq3adiJ1zYFBCPeNg%2FqaxMl%2FBHmkqX4cnFNhL76l99BL7%2F9gUwF2waZzVQbtfMk%0AwQ7E%2BykBvboedImzqE6b9bvkTiHrMeW62Ur5ppb7%2B9OjoQq7iYHZiZAEpyqFuV94bfoz%2Fl4GZzMP%0Av%2F2cH5w9UohSYcLgt9c4ho6XZltXyUJl9DzxyED2hM4%2BcFP%2BUmb5Sksp9hx0UL2WaNATnCB2rBdR%0AtyYcr7tpnB%2BqALJEDajkcVsO8srOrb%2F%2B5lM5xw%3D%3D&response-content-disposition=attachment%3B%20filename%3D%22c33d082a5604c2e121a44099ba5498ebe49b7843b2a382c07acee4edd9922475%22&response-content-type=application%2Foctet-stream;Get hashmaliciousUnknownBrowse
                                                                                                                      Setup.exeGet hashmaliciousUnknownBrowse
                                                                                                                        GalacticFever.exeGet hashmaliciousUnknownBrowse
                                                                                                                          Bloom.7zGet hashmaliciousUnknownBrowse
                                                                                                                            AsanaSetup.exeGet hashmaliciousUnknownBrowse
                                                                                                                              6DNTEUx66h.exeGet hashmaliciousRedLine Socelars onlyLoggerBrowse
                                                                                                                                SecuriteInfo.com.Trojan.MulDropNET.43.26999.exeGet hashmaliciousRedLineBrowse
                                                                                                                                  InstallSlack.exeGet hashmaliciousUnknownBrowse
                                                                                                                                    YouTube To Mp4 Converter.exeGet hashmaliciousUnknownBrowse
                                                                                                                                      YouTube To Mp4 Converter.exeGet hashmaliciousUnknownBrowse
                                                                                                                                        Dante.7z.exeGet hashmaliciousUnknownBrowse
                                                                                                                                          winpro.exeGet hashmaliciousUnknownBrowse
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:DIY-Thermocam raw data (Lepton 2.x), scale 0-0, spot sensor temperature 0.000000, unit celsius, color scheme 0, calibration: offset -3.523132, slope 83494575363627858001920.000000
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):10472
                                                                                                                                            Entropy (8bit):7.837440572988327
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:192:C2qNlQN+7UsqpTVlKvZmo18iqTy/3CLPIEw69hyDNoLz+QbnoCieifNAdeycl:C8/sq2D7YPgThoWQ8Cios
                                                                                                                                            MD5:3550AAAC09D057F05A056FCA2EAFE6F6
                                                                                                                                            SHA1:ED5C983BA28431037926FD1304338752EBFE0A77
                                                                                                                                            SHA-256:D0203A1EA00F565A8F6E3962CF45ADDBED7F6E72CEBC368BF55B313AB3361D5D
                                                                                                                                            SHA-512:8F1A658A86A4A12F3C60CAF4BC18627F3CA5F89BDF90A932E3EC978E7C0D3FD7F9A2449907E3EF2577EA4D766B480034FC544036A9F0D1B47D2D627E84D95CBB
                                                                                                                                            Malicious:false
                                                                                                                                            Reputation:low
                                                                                                                                            Preview:INSC.>.....Mar222021151921d.D.dYm.K.o.p..|@.w. ..1f-.....i...s.l.....P................Md... ..........pR....;_d...0......2q.=.0.E...E...Ci..:.....<.........................w.(qP.;..hA......e.......o.*.yt.;I.M......@................f}.$fn!x..T.j.A.......1...]6.C`C2....^C...i.....q...,$o.#......{...C.....[g.............k..v&..;..OK...{....3<...Q7h..M....6X.3|........?\..);...t.......{C......;-..........3..^....dc......wp^.s....l........%.lZrO...k.R.6H...v...o.Q.........y....Zz .."=.....{..o....."..[.c.c.....b.}y.t5.ny.O..7+A......sn.?...._..?....y..!.j.....Z.?..Y..Ko....=.w..Uf.f..b.}y..i~.j>.i>.G./.8..._&.L...2.U.^f.c ...;R...UN_....xFS*u2.6Z.Ggb.../...Vg.c.F.[...n.`..0._...}..U.l~...f1..G...u..#..oi~2...o.L....r...J.....:.......'.Im..-..g.z........w.|.B.).f'.G....!};j].J,,.....Mqz.............................s8A.....x..V.K.Q..s......"!"q...pk]...w.%X$TR.n0*!.[.......A...z...`3...z.A.......sg.F_R.):...w....{fg...;....%.'p..>...&D|D....8
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (GUI) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):146870272
                                                                                                                                            Entropy (8bit):6.7183719212678445
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1572864:CFPFqg/QDqnOeMvLq82U/pmmKKmB7Bg2N:EQfhbbmBL
                                                                                                                                            MD5:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            SHA1:6F9C06ED0F5A43826BA928EE1C818A69A52C2C7A
                                                                                                                                            SHA-256:38C81E9D17174F56BF3C22E5994D341AD041254ADA2743160B69D893B8D51EDA
                                                                                                                                            SHA-512:B844328E8BD38B21EA94D1B501CA6E6D6B19E731A6097226F09A71466485F5717082F20BA87B3CAAE7457F43F97EBBE33CC96B59B312EBABA1B7D623E24A8F59
                                                                                                                                            Malicious:true
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Reputation:low
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b..........".......... .......#.........@..........................................`...........................................c.jC..r.f.h...............q:..........p.......VZ.....................`QZ.(...P...0...........8.f.X...HGc.`....................text...H........................... ..`.rdata....M.......M.................@..@.data....HB...j......dj.............@....pdata...q:.....r:..Vr.............@..@.00cfg..(....P.....................@..@.retplne`....`..........................rodata......p..................... ..`.tls....a..........................@...CPADinfo8..........................@..._RDATA.............................@..@malloc_h........................... ..`.rsrc..............................@..@.reloc.......p......................@..B................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):1096
                                                                                                                                            Entropy (8bit):5.13006727705212
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:24:36DiJHxRHuyPP3GtIHw1Gg9QH+sUW8Ok4F+d1o36qjFD:36DiJzfPvGt7ICQH+sfIte36AFD
                                                                                                                                            MD5:4D42118D35941E0F664DDDBD83F633C5
                                                                                                                                            SHA1:2B21EC5F20FE961D15F2B58EFB1368E66D202E5C
                                                                                                                                            SHA-256:5154E165BD6C2CC0CFBCD8916498C7ABAB0497923BAFCD5CB07673FE8480087D
                                                                                                                                            SHA-512:3FFBBA2E4CD689F362378F6B0F6060571F57E228D3755BDD308283BE6CBBEF8C2E84BEB5FCF73E0C3C81CD944D01EE3FCF141733C4D8B3B0162E543E0B9F3E63
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:Copyright (c) Electron contributors.Copyright (c) 2013-2020 GitHub Inc...Permission is hereby granted, free of charge, to any person obtaining.a copy of this software and associated documentation files (the."Software"), to deal in the Software without restriction, including.without limitation the rights to use, copy, modify, merge, publish,.distribute, sublicense, and/or sell copies of the Software, and to.permit persons to whom the Software is furnished to do so, subject to.the following conditions:..The above copyright notice and this permission notice shall be.included in all copies or substantial portions of the Software...THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,.EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF.MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND.NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE.LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION.OF CONTRACT, TORT OR OTHERWISE, ARISIN
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:HTML document, ASCII text, with CRLF, LF line terminators
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):5557692
                                                                                                                                            Entropy (8bit):4.82586139211392
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:12288:FetnJnVncnJnknE9RBvjYJEi400/Q599b769B9UOE6MwMGucMEbHDuX04nNWQFna:WbXZ5IoWSL9bcwVR8mf+/cHBBaRp1
                                                                                                                                            MD5:DFA12F4EDCCB902D7D3B07FAE219F176
                                                                                                                                            SHA1:C2073440A5ADD265B4143DE05E6864FED2C3B840
                                                                                                                                            SHA-256:501F0B7EBF0BE7ED8702D317332A0F8820AF837C0A2A1D7645BA04352270E2B8
                                                                                                                                            SHA-512:EEE3A8E0EEAE139DDD9369D0869C29C91007BF6C5B0D7982918D5A013214A9E80B9233E7C1CCB43124152F684F0B782831B0A6B3D126558261DD161230004E50
                                                                                                                                            Malicious:false
                                                                                                                                            Preview: Generated by licenses.py; do not edit. --><!doctype html>.<html>.<head>.<meta charset="utf-8">.<meta name="viewport" content="width=device-width">.<meta name="color-scheme" content="light dark">.<title>Credits</title>.<link rel="stylesheet" href="chrome://resources/css/text_defaults.css">.<link rel="stylesheet" href="chrome://credits/credits.css">.</head>.<body>.<span class="page-title" style="float:left;">Credits</span>.<a id="print-link" href="#" style="float:right;" hidden>Print</a>.<div style="clear:both; overflow:auto;"> Chromium <3s the following projects -->.<div class="product">.<span class="title">2-dim General Purpose FFT (Fast Fourier/Cosine/Sine Transform) Package</span>.<span class="homepage"><a href="http://www.kurims.kyoto-u.ac.jp/~ooura/fft.html">homepage</a></span>.<input type="checkbox" hidden id="0">.<label class="show" for="0" tabindex="0"></label>.<div class="licence">.<pre>Copyright(C) 1997,2001 Takuya OOURA (email: ooura@kurims.kyoto-u.ac.jp)..You may us
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):148598
                                                                                                                                            Entropy (8bit):7.923683311160288
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:GtsKzwI/bp2N3/nXCWZQCPxBVO2o418Gb0+VRLf0ld0GY3cQ3F2DExm/KLQ2I:GuKzwI/kNPyCtoK18Gb0OV8ld0GecQ3s
                                                                                                                                            MD5:237CA1BE894F5E09FD1CCB934229C33B
                                                                                                                                            SHA1:F0DFCF6DB1481315054EFB690DF282FFE53E9FA1
                                                                                                                                            SHA-256:F14362449E2A7C940C095EDA9C41AAD5F1E0B1A1B21D1DC911558291C0C36DD2
                                                                                                                                            SHA-512:1E52782DB4A397E27CE92412192E4DE6D7398EFFAF8C7ACABC9C06A317C2F69EE5C35DA1070EB94020ED89779344B957EDB6B40F871B8A15F969EF787FBB2BCA
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..................#.Z...:......k.....k.....k ....k.....k=....k.....k.....k.....l.....l.....l;....l."...l2....l.9...l.;...l.<...l.>...l'?...l.H...l.P...l.R...l{S..NziT..Oz.U..PzJW..Qz2Z..Rz+]..Sz^`..Tzod..Uz9h..Vz.k...z.o...z.p...zmr...z.s...z.t...zWu...z.u...zA....z......p.....s.....................................................=...........{.....9............"....1,....Q/.....7.....;....-E....eO.....S....3U.....]....|f....dg.....h.....j.....m.....n.....q.....s....Wu.....w.....y....2z.....{....D}................;..............................................l....N........H.............|....K....0...."...................B....0.......................Y........................o....6..............{....4....F....".........f..........L........t....>.......................:.......................:.....q.....g.....\.....T".....'....z'.....'....'(.....(.....).....*.....+....Z+.....+....+...=,...Q2...;6....6...;7....7...H8....8...a9....9
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):219575
                                                                                                                                            Entropy (8bit):7.950067097420845
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:qDQYaRyd+9bNNPyCt9gx5GMRejnbdZnVE6Yopym74:vf53PV6edhVELo374
                                                                                                                                            MD5:7059AF03603F93898F66981FEB737064
                                                                                                                                            SHA1:668E41A728D2295A455E5E0F0A8D2FEE1781C538
                                                                                                                                            SHA-256:04D699CFC36565FA9C06206BA1C0C51474612C8FE481C6FD1807197DC70661E6
                                                                                                                                            SHA-512:435329D58B56607A2097D82644BE932C60727BE4AE95BC2BCF10B747B7658918073319DFA1386B514D84090304A95FCF19D56827C4B196E4D348745565441544
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..................#.[...:......k.....k.....ky....k>....k|....kw....k5&...kq+...l.....l.5...l.:...l.B...l.X...l\o...l.q...lBs...l.v...l<w...l.....l....l.....l...Nz....Oz...Pz....Qz....Rz....SzS...Tzp...UzF...Vz.....z.....z.....z.....z.....z.....z|....z.....zf....z.'.....*....3/....u8....~:.....=.....B.....N.....O.....X.....^....id.....i.....p.....r....#w.....{...............4.....%................\................\...../.....O.....\.....q.................q.................o.....m.....Z.....{.....l.............................d..........=....>....C....H....I....K....L...%N....N...OP....Q...BS....T....V....Y....]....b....j....r....s...Du....v....w...^y....z...}~...._.........y........8....W.............E.......................H...............U..............6.....Z.....{.....o.....e...................................I............(.....8.....9....l9.....9....y:.....;.....<.....<....==.....=....=...D>...dD...ZH....H...rI....J....J
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):4524696
                                                                                                                                            Entropy (8bit):6.367051782021837
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:49152:aYlc/220PPiMLKam+VMrLi21f4i3jn5ZO3XUDmOZQwVd2uQpN3WsGVUWd55i/jrs:a6KD2Mrdaix4NQnLt
                                                                                                                                            MD5:7641E39B7DA4077084D2AFE7C31032E0
                                                                                                                                            SHA1:2256644F69435FF2FEE76DEB04D918083960D1EB
                                                                                                                                            SHA-256:44422E6936DC72B7AC5ED16BB8BCAE164B7554513E52EFB66A3E942CEC328A47
                                                                                                                                            SHA-512:8010E1CB17FA18BBF72D8344E1D63DED7CEF7BE6E7C13434FA6D8E22CE1D58A4D426959BDCB031502D4B145E29CB111AF929FCBC66001111FBC6D7A19E8800A5
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Joe Sandbox View:
                                                                                                                                            • Filename: Octoparse Setup 8.5.8.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: , Detection: malicious, Browse
                                                                                                                                            • Filename: , Detection: malicious, Browse
                                                                                                                                            • Filename: , Detection: malicious, Browse
                                                                                                                                            • Filename: , Detection: malicious, Browse
                                                                                                                                            • Filename: Setup.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: GalacticFever.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: Bloom.7z, Detection: malicious, Browse
                                                                                                                                            • Filename: AsanaSetup.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: 6DNTEUx66h.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: SecuriteInfo.com.Trojan.MulDropNET.43.26999.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: InstallSlack.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: YouTube To Mp4 Converter.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: YouTube To Mp4 Converter.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: Dante.7z.exe, Detection: malicious, Browse
                                                                                                                                            • Filename: winpro.exe, Detection: malicious, Browse
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......S........................................a.............................................................................Rich....................PE..d.....2..........." ......3.........0.&.......................................E.....VTE...`A..........................................A.x.....A...... E.@.....B..!....D.."...0E....P.>.T....................{7.(...pz7..............{7..............................text...D.3.......3................. ..`.rdata........3.......3.............@..@.data....#....A.......A.............@....pdata...!....B.."...>B.............@..@.rsrc...@.... E......`D.............@..@.reloc......0E......fD.............@..B................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2714112
                                                                                                                                            Entropy (8bit):6.6777628855193685
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:49152:tJTlgrbjpHr7KxPTiqdU9YRDQ2K7Fz68ZxxJ0JoC3MCfuTEM+:bOx39YRikMiu4
                                                                                                                                            MD5:21647425561F9DFA567139D2C505F585
                                                                                                                                            SHA1:EFD5B3D6A21886C6467D28C73D20BE0ACB4591E9
                                                                                                                                            SHA-256:B827172262CEA032BE8303AAE69A947A8D867006269BB8B2BC7E77619333C1B6
                                                                                                                                            SHA-512:C5316A6B2D77CF2C2949698F9CBA92FE1EC57B2AC82D55FBBEFFE71B4834EC06E83728A176F5089C91CC9544DEDA0667F39338F1E9D1A37DB69BD8BAD4AF915A
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....(!..>................................................?...........`A........................................X.'.....r.'.(............p>..............P?../....'.......................'.(...`e!.0.............'.0............................text....'!......(!................. ..`.rdata...9...@!..:...,!.............@..@.data.........(.."...f(.............@....pdata.......p>.......(.............@..@.00cfg..(.... ?......4).............@..@.tls.........0?......6).............@..._RDATA.......@?......8).............@..@.reloc.../...P?..0...:).............@..B........................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):10284336
                                                                                                                                            Entropy (8bit):6.285840716785654
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:196608:KWzwSv9AAQlCy4liXUxCGZHa93Whlw6Zi88EIb:KnKlQlz4liXUxCGZHa93Whlw6Zf8EIb
                                                                                                                                            MD5:D866D68E4A3EAE8CDBFD5FC7A9967D20
                                                                                                                                            SHA1:42A5033597E4BE36CCFA16D19890049BA0E25A56
                                                                                                                                            SHA-256:C61704CC9CF5797BF32301A2B3312158AF3FE86EADC913D937031CF594760C2D
                                                                                                                                            SHA-512:4CC04E708B9C3D854147B097E44FF795F956B8A714AB61DDD5434119ADE768EB4DA4B28938A9477E4CB0D63106CCE09FD1EC86F33AF1C864F4EA599F8D999B97
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:...'........CmnD........ Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html .0....A..p....A.......A..`....A.......A.......A..P....A.. &...B..p&...B...&.. B...n..4B...n..GB...o..ZB.. p..mB...p...B..0r...B...r...B...r...B..Ps...B...t...B..`u...B...v...C..Pw...C...w..+C...y..>C...y..QC...{..dC..p}..wC...}...C.......C..p....C..P....C.......C.. ....C.......C.......D.. ..."D.....5D..0...FD......ZD.....jD.. ...}D.......D.......D.......D..`....D.......D.......D..P....E.......E...../E..P...BE......YE......iE..p...|E.......E.......E..`....E.......E.......E...2...F....&..F..`.&.6F....&.MF....&.gF..@.&.~F....&..F..p.&..F.. .&..F..P.&..F..pY(..F...%)..G....).7G....).YG...K*.yG...*..G..0.+..G.. .+..G....+..G..`.+..H....+..H...e+.6H....+.TH..`.-.mH....-..H....-..H....-..H..`.-..H....-..H..P....H.......I.......I..@...-I...I..@I...J..SI..`J..fI...J..yI...K...I..`K...I...K...I...M...I...p...I...q...I..`....J.......J......4J...$/.IJ..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):447488
                                                                                                                                            Entropy (8bit):6.309802860311442
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:CMgpxyZ5V8fTykwI08pCYixK53Ypm8I/yaNrm44tnePe/FkUCd:C1pxy+TyRd80YYDIn4NQvU
                                                                                                                                            MD5:91F11A9181583F75E2B29FCD9050C7F5
                                                                                                                                            SHA1:FD90ABC3048F3347435DFBD1075B8051AC6FFABC
                                                                                                                                            SHA-256:43A549FF51CE4EE20074999527B19FBF280A8CAA7DB0BDE957704033B6F5B330
                                                                                                                                            SHA-512:925AC2A87E436219E22A924F615669CB166E8183D6E4DD0F00ED68C16FAA3FFA10AB410106A7F81320F10205415BFF9D10976F1DC0BB695B9293B80101E4CE8A
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." ................0........................................`............`A............................................a...I...(....@..x........=...........P..................................(.......0...........X................................text............................... ..`.rdata..D...........................@..@.data...|L....... ...\..............@....pdata...=.......>...|..............@..@.00cfg..(...........................@..@.tls....!.... ......................@..._RDATA.......0......................@..@.rsrc...x....@......................@..@.reloc.......P......................@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):7040512
                                                                                                                                            Entropy (8bit):6.411129914957704
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:49152:UYwyKtMlbopeVIFTp22asNOy4vvzlqaip5QAW3JsGVi2W2/pU/vIx4LwlcwsSV/r:seVIFN2pnypWPFQq0yTdhVOrH7O5pm
                                                                                                                                            MD5:16DEB84C2DD1D55ED938A112B6CE92D4
                                                                                                                                            SHA1:15ED353F418030E2A3D94C2C77D45605EA9CB3C2
                                                                                                                                            SHA-256:B49922F98946952E96C03C468A4812E0B1E7A090F4E1F96489F48ACC07EBA1F8
                                                                                                                                            SHA-512:BB9EA90E01AC7E633D3E27054206C6070B352CCE196B7B70B989AF2B718DEC3506D3AAF62E3074FDC93E7E23839ED15CCB8A508305170E7BA38920CA21F4047B
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....VQ...........F......................................Pl...........`A..........................................b. ...-.c.d....Pk.......i.,............`k......jb......................ib.(... .Q.0........... .c.....0.b.@....................text...UUQ......VQ................. ..`.rdata..|....pQ......ZQ.............@..@.data........pd......Vd.............@....pdata..,.....i......`h.............@..@.00cfg..(.... k......rj.............@..@.tls....1....0k......tj.............@..._RDATA.......@k......vj.............@..@.rsrc........Pk......xj.............@..@.reloc.......`k......~j.............@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):192492
                                                                                                                                            Entropy (8bit):5.056947701287817
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:wPa9g6JOjV/E92t7Rq4rgEkDvuh7gb8oeyHXkiqpVGMqyZJjhEb2WAbTMb0kew9C:wu0gSZtutQPOx30jH8+D
                                                                                                                                            MD5:C0490D3C4FF1EE8614225043654AAF0C
                                                                                                                                            SHA1:B044484CED372B5817285B67EBA59F0AF40CB639
                                                                                                                                            SHA-256:E98F3437F6D451FB9FEC33473ABC9F07ABF0794CD45D02AE1DE48CCB9FC5C8B6
                                                                                                                                            SHA-512:3D66B9A2AA4B08B19C635D350342A162879042E926FA41E059E3C62FC68BDD73A91D6A9A41E409EEEE7338DAF0A931F178E9D151B4B9EE9EF6545F8957CCEFB4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........6.j.`F..k.oF..l.zF..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..G..}..G.....G.....G....'G..../G....7G....>G....EG....LG....MG....NG....zG.....G.....G.....G.....G.....G.....H.....H.....H....8H....jH.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I....%I....<I....HI....UI.....I.....I..*..I..+..I..,..I../..J..0."J..1.~J..2..J..3..J..4..J..5..K..6.|K..7..K..>..K..?..K..N..L..g..L..i..L..j..L..k..L..l.$L...])L...]}L...].L...].M...].M...].M...].M...].N...]hN...]~N...]FP...]hP...]qP...]zP...^.P...^.P...^.P...^"Q...^.Q...^>R...^GR...^.R...^.R...^.R...^.R...^.S...^@S...^_S...^.S...^.S...^.T..%^.T..&^)T..'^BT..)^.T..*^.T..+^.U..,^&U..-^8U...^dU../^.U..0^{V..2^,W..3^FW..4^.W..5^.W..8^.W..9^.X..:^.Y..;^.Y..<^.Y..>^gZ..?^%[..@^.\..A^.\..B^H\..C^|\..D^.^..E^._..F^.`..G^.a..I^Ha..K^Qa..L^pa..M^.a..N^.a..O^.a..T^nb..U^.b..V^fc..W^.c..X^.c..Y^.c..Z^id..[^.d..\^We..]^.e..b^Lf..d^[f..e^af..f^jf..g^.f..h^.f..i^.f..j^.f..k^.g..l^.g..o^8g..p^gg..q^.g..r^.h..s^6h
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):198772
                                                                                                                                            Entropy (8bit):5.130198020742576
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:eVsHgKH2KNRpqhXdJcFxu3PzGF+hF2MMCS2xHMuZtE9P6NsV0ejKK1U/e1asMgSf:eVsHg+NRu3PzjiHMgSENnuI1LCx3
                                                                                                                                            MD5:9B610C0107724603B19893C4CCC551A0
                                                                                                                                            SHA1:37D987196C640861B336628D67E22EF283115E7D
                                                                                                                                            SHA-256:F9D96AF7D5EF9E0B4F4EF133A98A64B4398C7AEF04E20688B523E6EA27C61F15
                                                                                                                                            SHA-512:E99C07E474278990027E560D0F0464ED0D59C485226B56C8318470C41B5976602B1D52659996EBEECECC3D59927577202AB6312E07F40F71EB39972AE5296BC6
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........>.j.PF..k._F..l.jF..n.rF..o.wF..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G.....G....'G.....G....5G....<G....>G....~G.....G.....G.....G.....H.... H....$H.....H....NH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I.....I....'I..../I....BI.....I.....I..*..I..+..I..,..I../..I..0..I..1.8J..2.MJ..3.fJ..4..J..5..J..6..K..7.<K..>.mK..?.xK..N..K..g..K..i..K..j..K..k..K..l..K...].K...].L...]6L...]9M...]AM...].M...].M...].M...] N...]@N...]/R...]SR...][R...]lR...^.R...^.R...^.R...^.S...^.S...^/T...^3T...^hT...^}T...^.T...^.T...^.T...^.U...^.U...^uU...^.U...^.U..%^.U..&^.U..'^.U..)^TV..*^.V..+^.V..-^.V...^.V../^.W..0^.W..1^bX..2^.Y..3^8Y..4^jY..5^.Y..8^.Y..9^dZ..:^c[..;^y[..<^.[..>^.[..?^.\..@^.]..A^'^..B^L^..C^.^..D^.b..E^zd..F^.f..G^.f..I^.f..K^.f..L^.f..M^.f..N^.g..O^dg..T^.h..U^Qh..V^.h..W^.i..X^/i..Y^.i..Z^,j..[^.j..\^'k..]^wk..b^.l..c^.l..d^.l..e^.l..f^.l..g^.l..h^.l..i^.m..j^.m..k^8m..l^hm..o^.m..p^.n..q^+n..r^.n..s^.n..t^.o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):214333
                                                                                                                                            Entropy (8bit):4.866044052884893
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:tuOXNa4V175RToR0NZzrmLy8AOWa2ReKsUVT:Z9a4V175RTk0CLy8AOWa2Rek
                                                                                                                                            MD5:7F3FE009D84DDDF6A509AE33D95A7E7B
                                                                                                                                            SHA1:667D804C714FEAB9D104DB211A981357B2B8124F
                                                                                                                                            SHA-256:58BEC94801D09157C852CFBC3CCD9916FAFD1947FDC61C1453456BCE5B054C4E
                                                                                                                                            SHA-512:92151D7589682C7078D9F9915EB6D14D350A13A126A000E4DA29228649926282CAF03CD996E68704F9E5DD0FAF11750F7C4EE105E1655F9BECBE0E267F7FC614
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.'G..y.-G..z.<G..|.BG..}.TG....\G....aG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....H....4H....YH....[H...._H....kH....~H.....H.....H.....H....&I....WI....^I....aI....bI....vI.....I.....I.....I.....I.....I.....I.....J....cJ.....J..*..J..+..J..,..J../..K..0.&K..1..K..2..K..3..K..4..L..5.@L..6..L..7..L..>..M..?..M..N.>M..g.LM..i.OM..j.SM..k.ZM..l.hM...]mM...].M...].M...].O...]+O...]rO...].O...].O...]%P...]OP...].Q...].Q...].R...].R...^;R...^MR...^.R...^.R...^9T...^.T...^.T...^.T...^.U...^WU...^xU...^.U...^.U...^)V...^AV...^gV..%^yV..&^.V..'^.V..)^IW..*^.W..+^.W..,^.W..-^.W...^#X../^uX..0^QY..1^.Z..2^.Z..3^.Z..4^.[..5^X[..8^.[..9^t\..:^.]..;^.]..<^.]..>^X^..?^5_..@^._..A^._..B^.`..C^B`..D^.b..E^.b..F^yc..G^.c..I^#d..K^-d..L^Od..M^ad..N^.d..O^.d..T^~e..U^.e..V^.f..W^.f..X^.f..Y^Rg..Z^.h..[^.h..\^#i..]^.i..b^.j..d^.j..e^.j..f^.j..g^.k..h^.k..i^dk..j^ek..k^.k..l^.k..o^.k..p^:l..q^pl..r^.l..s^!m
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):274613
                                                                                                                                            Entropy (8bit):4.47502496975818
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:L4+ROskKw6rEr2Rp9KJ3bEr98JMg/xCpwuDuLAJ/fvuhIbzo:0KjYSfy3bE8AJ/o
                                                                                                                                            MD5:ECFF6F8DC301B6B435DF5E44C2AE8A2A
                                                                                                                                            SHA1:6FDFA4136F3BB5CCD9E4E7B4706DB98F17F85C1B
                                                                                                                                            SHA-256:3250ADECE302934B9A78569D72CA70E596D91865455D5274CCF8D651CCAC5350
                                                                                                                                            SHA-512:C9E22FF9FEF3C2EEF6B25886E32A27FD19D56C1085C993AEA1D5A1528D65735B0628B825A2834A1B8B2512D8ABF59CABB3B35044484F566057826EAA3CFA682D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........4.j.dF..k.sF..l.~F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..G..}..G.....G....$G....,G....4G....9G....AG....HG....OG....VG....WG....XG.....G.....H....7H....bH.....H.....H.....H.....H.....H.....I....;I....iI.....I.....I.....I.....I.....I.....I.....J.....J....,J....MJ....\J....tJ.....J....&K..*.DK..,.GK../.~K..0..K..1..L..2.,L..3.HL..4..L..5..L..6.}M..7..M..>..N..?. N..N.UN..g.nN..i.qN..j.uN..k.zN..l..N...].N...].N...].O...].P...].P...]9Q...]xQ...].Q...]0R...]\R...].U...]WU...]`U...]xU...^.U...^.U...^ V...^.V...^.W...^.W...^.X...^hX...^.X...^.X...^.X...^.Y...^@Y...^UY...^.Y...^.Y...^.Z..%^+Z..&^UZ..'^{Z..)^'[..*^z[..+^.[..,^.[..-^.[...^H\../^.\..0^.]..1^.^..2^.`..3^/`..4^.`..5^.`..8^.a..9^eb..:^od..;^.d..<^.d..>^4e..?^.f..@^.g..A^.g..B^.g..C^Hh..D^.k..E^Xm..F^.n..G^Po..I^.o..K^.o..L^.o..M^.o..N^.p..O^yp..T^.q..U^.q..V^.r..W^.s..X^Us..Y^}s..Z^Zt..[^.u..\^.u..]^+v..b^.w..c^.w..d^.w..e^.w..f^.w..g^/x..h^.x..i^.x..j^.x..k^.x..l^.x..o^dy..p^.y..q^.z..r^.z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136216
                                                                                                                                            Entropy (8bit):5.401900922137372
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:RnSJS9mJSpAaCcg4H65rKoMVhoVFBL8lmoT69Q1HyO/RjiNO5ufzwXiqCUXBlHPE:RnyS9mJpZcgNoF2O5hXiqCUXBdFtXfQv
                                                                                                                                            MD5:65C1F1FAEE2EDBE7D7B6709D7E6B6EF7
                                                                                                                                            SHA1:A81848018BC9978EDB9E764474CF9C9B297BB91C
                                                                                                                                            SHA-256:D8A83A19F8C66742226538AF9489B70C1439F6133591E29A353ADDD9089F67C6
                                                                                                                                            SHA-512:590587A66BF03C2CC61C49CB9452220B3697AD4A00ABC0056017FD0203EBC2980EC8F59337FCD1FF90EEDFA8F8171ACEF5818B1DA856EC78C352498002679FBD
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....0H....4H....;H....HH....XH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I..../I....KI..*.WI..+.ZI..,.xI../..I..0..I..1..I..2..I..3..I..4..J..5.9J..6.vJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...])K...].K...].K...].K...].L...]1L...]hL...]vL...]=M...]XM...]`M...]gM...^}M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^"O...^3O...^JO...^^O...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^0P..*^ZP..+^oP..,^.P..-^.P...^.P../^.P..0^GQ..1^.Q..2^?R..3^\R..4^.R..5^.R..8^.R..9^HS..:^.T..;^+T..<^IT..>^}T..?^.U..@^cU..A^tU..B^.U..C^.U..D^.V..E^AW..F^.W..G^.X..I^:X..K^DX..L^WX..M^bX..N^vX..O^.X..T^.X..U^.Y..V^yY..W^.Y..X^.Y..Y^.Y..Z^OZ..[^.Z..\^.Z..]^*[..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^/\..j^0\..k^E\..l^H\..o^i\..p^.\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):139589
                                                                                                                                            Entropy (8bit):5.805335191018667
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:m4bfDngdBcePzo3zO1J+17NPR12lygg+5XWAJ/e/Y8QG1A:mkfcdBczzOyL2lyb/Y8Qx
                                                                                                                                            MD5:C64366988F8D46B6912F2D6BE0120B1A
                                                                                                                                            SHA1:3A33FE58CA30F41EA341CC9B9413A6CBDD6A1E4B
                                                                                                                                            SHA-256:30FD14794EE1088D37387F42E5D366F962FA9273EBA8CCDD9B950646D2DD6172
                                                                                                                                            SHA-512:8990D212AFF170A547733B0CD54055ECF6D30319189A7D88CDA149B8994986C9CCC899D203FA4CEDCDACB3217B2B72E2A9E69AA195B285AA388BF2AF125158FE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........!.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.$G..|.*G..}.<G....DG....IG....QG....YG....aG....hG....oG....vG....wG....xG.....G.....G.....G.....G.....G.....G.....H.....H.....H....+H....9H....IH....XH....iH....pH....sH....tH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.<I../.YI..0.cI..1..I..2..I..3..I..4..I..5..I..6.4J..7.HJ..>.^J..?.fJ..N.xJ..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...]{K...].K...].K...].K...].K...].L...].L...].M...].N...].N...].N...^"N...^,N...^EN...^hN...^.N...^.O...^.O...^>O...^LO...^wO...^.O...^.O...^.O...^.O...^.O...^.P...^.P..%^ P..&^.P..'^;P..)^.P..*^.P..+^.P..-^.P...^.P../^.P..0^gQ..1^.Q..2^7R..3^MR..4^{R..5^.R..8^.R..9^.S..:^.S..;^.S..<^.T..>^CT..?^.T..@^lU..A^~U..B^.U..C^.U..D^.W..E^.X..F^lY..G^.Y..I^.Y..K^.Y..L^.Y..M^.Y..N^.Y..O^ Z..T^pZ..U^.Z..V^.Z..W^.[..X^([..Y^`[..Z^.[..[^.[..\^B\..]^m\..b^.\..c^.]..d^.]..e^.]..f^.]..g^*]..h^B]..i^Q]..j^T]..k^e]..l^h]..o^.]..p^.]..q^.]..r^.^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):127576
                                                                                                                                            Entropy (8bit):5.4328055342090105
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:UpDv+bjCEOCjaMRZszOfb+5VeWAJ/twbPeu:cv9EONMRazOfb+vowbj
                                                                                                                                            MD5:9FB8A421CAF18588B494C3F34D8764C6
                                                                                                                                            SHA1:201AC33074C76830893197AB9382EC84553F1794
                                                                                                                                            SHA-256:0997BE868557F97F013242C066B192E574B4FA553D13F37F97A1DE714B95A858
                                                                                                                                            SHA-512:59B2FD820F9BD45015444C85FCB55E04027836E62C6A9187E8CE0C2A9AEA6E5E626B76627C9601F69E769D4DDD09F6A8CCC2DFDDA6835E261B94A5AF91D8BBF9
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....%H....2H....=H....QH....cH....jH....mH....nH....uH....~H.....H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.&I..0.0I..1.^I..2.jI..3.tI..4..I..5..I..6..I..7..I..>..I..?..J..N..J..g..J..i.!J..j.%J..k.*J..l./J...]4J...]]J...].J...]6K...]<K...]ZK...]hK...]xK...].K...].K...].M...](M...]/M...]5M...^BM...^OM...^.M...^.M...^4N...^`N...^iN...^.N...^.N...^.N...^.N...^.N...^.N...^.N...^,O...^3O...^FO..%^IO..&^]O..'^eO..)^.O..*^.O..+^.O..,^.O..-^.O...^.P../^(P..0^.P..1^.P..2^UQ..3^gQ..4^.Q..5^.Q..8^.Q..9^.R..:^.R..;^.R..<^.R..>^.S..?^fS..@^.S..A^.S..B^.T..C^.T..D^CU..E^.U..F^YV..G^.V..I^.V..K^.V..L^.V..M^.V..N^.V..O^.W..T^IW..U^oW..V^.W..W^.X..X^.X..Y^<X..Z^.X..[^.X..\^.Y..]^JY..b^.Y..d^.Y..e^.Y..f^.Y..g^.Y..h^.Z..i^!Z..j^"Z..k^0Z..l^3Z..o^HZ..p^}Z..q^.Z..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136414
                                                                                                                                            Entropy (8bit):5.486129891558703
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:rbCAFix2ob23Yp8tMoAq/AJ/vN5N4ygxjl+:ruAFiUtMBB4ygVg
                                                                                                                                            MD5:A4D8EECEC2747FFB12551AB8E93FAFDF
                                                                                                                                            SHA1:59AA4C3A7179C46C7699D0D918DD92722A614DEF
                                                                                                                                            SHA-256:D67F95E2982E7DEBF67741B88CE054F5BB8356021A280E092227B77EC82E298F
                                                                                                                                            SHA-512:1DE20FA8798D050966C99AA0590C7460A40B6FF41AFC36645C1F4655A09F6070530ADBD1D6FB5937D1FC9965C7AAC932DBB06A0FF47F31BCB6D4717EAA81613E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........F.j.@F..k.OF..l.ZF..n.bF..o.gF..p.tF..q.zF..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....G.....G.....G.....G....%G....,G....-G.....G....gG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....-H....FH....MH....PH....QH....[H....eH....yH.....H.....H.....H.....H.....H.....H.....H..*..H..+..I..,..I.././I..0.7I..1.\I..2.jI..3.sI..4..I..5..I..6..J..7..J..>.*J..?.2J..N.GJ..g.RJ..i.UJ..j.YJ..k.bJ..l.hJ...]uJ...].J...].J...]{K...].K...].K...].K...].K...].L...],L...]%M...]<M...]CM...]IM...^fM...^sM...^.M...^.M...^VN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^.O...^2O...^mO...^{O...^.O..%^.O..&^.O..'^.O..)^.P..*^#P..+^4P..,^DP..-^JP...^mP../^.P..0^.Q..1^.Q..2^TR..3^kR..4^.R..5^.R..8^.R..9^SS..:^!T..;^0T..<^LT..>^tT..?^.T..@^ZU..A^aU..B^lU..C^.U..D^.V..E^.W..F^.W..G^.X..I^)X..K^2X..L^@X..M^IX..N^XX..O^.X..T^.X..U^.Y..V^.Y..W^.Y..X^.Y..Y^.Y..Z^2Z..[^.Z..\^.Z..]^.[..b^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.\..j^.\..k^#\..l^&\..o^>\..p^h\..q^.\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):235472
                                                                                                                                            Entropy (8bit):4.928800315357694
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:7zUGI8nOCi+hF/kDuKx3xqt5ImROl3ppSZ3/7zFMeF+fY2hl76Hi5YlXSRzG:7zUGIiOCi+hF/kDuKx3xqt5ImROl3ppe
                                                                                                                                            MD5:DC334C39FA35F04D554FD6BF4D6301BE
                                                                                                                                            SHA1:8F83F39B41447E479E1DE761721FC35B22A1F227
                                                                                                                                            SHA-256:168FDC777570FA85C16EE7A701BEF28FE6D7EB943A674AD8681A2F9FCEDD2635
                                                                                                                                            SHA-512:E4F0FE4AC83DF9F106D60DE2D4563519512D1B088ABB0FD52D4D459CCF093397C5F56E41958111AD67AB9A19DC2A9DD6870356BE2E344559DEAF757D3B96B7A1
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.*G..|.0G..}.BG....JG....OG....WG...._G....gG....nG....uG....|G....}G....~G.....G.....H....+H....eH.....H.....H.....H.....H.....H.....H.....I....2I...._I.....I.....I.....I.....I.....I.....I.....I.....I.....J.....J...."J....2J.....J.....J..*..J..+..K..,. K../.pK..0..K..1..L..2.2L..3.JL..4..L..5..L..6.TM..7.|M..>..M..?..M..N..M..g..M..i..N..j..N..k..N..l..N...].N...]tN...].N...].O...].O...]CP...]jP...].P...].Q...]0Q...].R...].S...].S...]#S...^WS...^iS...^.S...^.S...^/U...^.U...^.U...^.V...^)V...^]V...^mV...^.V...^.V...^.V...^oW...^.W...^.W..%^.W..&^.W..'^.X..)^.X..*^.X..+^.Y..,^.Y..-^FY...^.Y../^.Y..0^.Z..1^.[..2^.\..3^.\..4^:]..5^a]..8^.]..9^.^..:^;`..;^V`..<^z`..>^.`..?^.a..@^sb..A^.b..B^.b..C^.b..D^.d..E^.e..F^.f..G^Qg..I^.g..K^.g..L^.g..M^.g..N^.g..O^8h..T^.h..U^.i..V^.i..W^Wj..X^xj..Y^.j..Z^.k..[^Ll..\^.m..]^jm..b^.n..c^.n..d^.n..e^.n..f^.n..g^.n..h^.o..i^3o..j^4o..k^So..l^Vo..o^.o..p^.o..q^.o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):112584
                                                                                                                                            Entropy (8bit):5.476085642762499
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:uXfjHeQnROOpWIWGmjXD0K6rcK4Rr3fSr5iBNgqkAJXuSOiJedMJrV9FDVfm3ggt:uC1OpTmjQK6ruzBNgBAJX9b63ggl+1w
                                                                                                                                            MD5:998947B55A25776181CC11110902F6D7
                                                                                                                                            SHA1:A93272EB26EB9977833FB809DF593759F2533570
                                                                                                                                            SHA-256:FCBCDFB71363750A9E404A365A00F196C9ED4FE149532580F149811475B45636
                                                                                                                                            SHA-512:A58B9B8BF6C2C2B14F870FDD3557B18AA002F5CC8C270EB0D35A1AAB3CB864CF472328F0515039515879C9B355569B7D049CA1A1569304CF347B40B5815B726F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v."G..w./G..y.5G..z.DG..|.JG..}.\G....dG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....(H....8H....MH....bH....iH....lH....mH....uH....}H.....H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../..I..0.!I..1.UI..2.cI..3.iI..4.}I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k..J..l..J...]#J...]DJ...]SJ...].J...].J...].J...].J...].J...]"K...]/K...].K...].K...].K...].K...^.L...^.L...^.L...^=L...^.L...^.L...^.L...^.L...^.L...^.L...^.L...^.M...^(M...^5M...^mM...^wM...^.M..%^.M..&^.M..'^.M..)^.M..*^.N..+^.N..,^.N..-^.N...^*N../^PN..0^.N..1^.N..2^UO..3^dO..4^.O..5^.O..8^.O..9^(P..:^.P..;^.P..<^.P..>^.Q..?^{Q..@^.Q..A^.Q..B^.Q..C^.R..D^.R..E^wS..F^.S..G^.T..I^8T..K^>T..L^HT..M^OT..N^ZT..O^vT..T^.T..U^.T..V^,U..W^@U..X^PU..Y^tU..Z^.U..[^.V..\^OV..]^sV..b^.V..c^.V..d^.W..e^.W..f^.W..g^.W..h^2W..i^EW..j^FW..k^QW..l^TW..o^kW..p^.W..q^.W
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):113481
                                                                                                                                            Entropy (8bit):5.470392531977106
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:b2jJT3eY9DS2harnCBNg2AJXZfh3ggl+S7wh:ajd3ezrVDwh
                                                                                                                                            MD5:5CC884BF0EC1C702240173B35A421D1B
                                                                                                                                            SHA1:19BDFB0B31DC4A75E7C135D1A8EF76F5F6CC3A31
                                                                                                                                            SHA-256:9F0C75C84381360677055D6197812C7A6C42DBFC6134EB8212D8A60ED1CA1601
                                                                                                                                            SHA-512:48772F50F6B0D846084A0CFB0D6433F2FBF73677B557B022D0D73D04790636C0C40ED873C32FD037013E943FB7C24816EFDCDE38429520895C00C2D85A17EA5C
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..G..r..G..s."G..t.+G..v.@G..w.MG..y.SG..z.bG..|.hG..}.zG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....!H....%H....,H....6H....FH....VH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H..*..I..+..I..,.%I../.6I..0.?I..1.rI..2..I..3..I..4..I..5..I..6..I..7..I..>..J..?..J..N..J..g.(J..i.+J..j./J..k.4J..l.;J...]@J...]aJ...]pJ...].J...].J...].J...].K...].K...]?K...]LK...].L...].L...]"L...](L...^1L...^9L...^KL...^jL...^.L...^.L...^.L...^.M...^.M...^.M...^&M...^9M...^UM...^bM...^.M...^.M...^.M..%^.M..&^.M..'^.M..)^.N..*^-N..+^7N..,^CN..-^GN...^VN../^xN..0^.N..1^.O..2^yO..3^.O..4^.O..5^.O..8^.O..9^OP..:^.P..;^.Q..<^.Q..>^>Q..?^.Q..@^.R..A^.R..B^'R..C^@R..D^5S..E^.S..F^:T..G^kT..I^.T..K^.T..L^.T..M^.T..N^.T..O^.T..T^.U..U^+U..V^.U..W^.U..X^.U..Y^.U..Z^%V..[^gV..\^.V..]^.V..b^PW..c^WW..d^]W..e^bW..f^fW..g^xW..h^.W..i^.W..j^.W..k^.W..l^.W..o^.W..p^.W..q^.X
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):135123
                                                                                                                                            Entropy (8bit):5.373057629573399
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:JuYwPdcKTJ5z4FjRbeZrphXu6TxaXGQa7+4VdMBPcHYKCRKfKTAJ/c0JWFsMH5B1:J5Wb5ElulhXu4FVKAJ/0u4
                                                                                                                                            MD5:10B1D1097987EA050A5791ECEB5EABDA
                                                                                                                                            SHA1:C0812FBC16592A39CD1600196E62D0000B22BD73
                                                                                                                                            SHA-256:04B24396CC017E1DBB0BCA7371D7CAE10CAD2350DA661A8A035B572AA76CBD49
                                                                                                                                            SHA-512:F2A6767EAE2D5EEBFF35F6B7D3A932FFD797FDFB48023C75B3C98B1CED5B3695EC12E642D68582DA1AACAC1C59B0D3A2F029C702D0DF02D7B08430384D40E178
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.)G..y./G..z.>G..|.DG..}.VG....^G....cG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....!H....2H....EH....XH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....5I..*.@I..+.CI..,.aI../..I..0..I..1..I..2..I..3..I..4..J..5.*J..6.qJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]3K...].K...].K...].L...]!L...]4L...]hL...]wL...]TM...]uM...]~M...].M...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^&O...^/O...^AO...^UO...^cO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^4P..*^hP..+^xP..,^.P..-^.P...^.P../^.P..0^EQ..1^.Q..2^SR..3^sR..4^.R..5^.R..8^.R..9^_S..:^)T..;^@T..<^UT..>^.T..?^.U..@^yU..A^.U..B^.U..C^.U..D^.V..E^.W..F^.W..G^.W..I^.X..K^.X..L^)X..M^4X..N^BX..O^hX..T^.X..U^.X..V^JY..W^jY..X^}Y..Y^.Y..Z^.Z..[^jZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^.\..j^.\..k^*\..l^-\..o^T\..p^.\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136317
                                                                                                                                            Entropy (8bit):5.340572969000703
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:WTfkQC57IJHy5p1i1wwZ7+R5E7rAJ/kU8Cx6PZ410:sTC5KHypiT7q5E7E8I6PZ00
                                                                                                                                            MD5:460ED6807D7A0E5DDE909D706B4F267C
                                                                                                                                            SHA1:D4948B217B8A2E620E7AAC7A04C2E8483AA84B3C
                                                                                                                                            SHA-256:665E93CA25DE6050A4FBC1F343D67496D6E1E296DBBCC9EDF3DAB7BBCF1035DB
                                                                                                                                            SHA-512:FA6C57DCFDB6E53FA13FBB353C3C581C3DFBD4D34AE7612B1F780F4DA944DA253767FE86AB3C5A3EAE918A339649828643FD50B9F66BB943F29924E713891D98
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....!H..../H....@H....SH....fH....~H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....>I..*.II..+.LI..,.jI../..I..0..I..1..I..2..I..3..I..4..J..5. J..6.lJ..7.}J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]"K...].K...].K...].K...].L...].L...]?L...]NL...]%M...]@M...]IM...]OM...^`M...^nM...^.M...^.M...^YN...^.N...^.N...^.N...^.N...^.O...^.O...^!O...^:O...^HO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^)P..*^]P..+^mP..,^.P..-^.P...^.P../^.P..0^GQ..1^.Q..2^6R..3^VR..4^.R..5^.R..8^.R..9^5S..:^.S..;^.S..<^.T..>^HT..?^.T..@^.U..A^$U..B^6U..C^[U..D^VV..E^.V..F^JW..G^.W..I^.W..K^.W..L^.W..M^.W..N^.W..O^'X..T^yX..U^.X..V^.Y..W^?Y..X^RY..Y^.Y..Z^.Z..[^eZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.\..j^.\..k^.\..l^.\..o^1\..p^V\..q^y\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):123538
                                                                                                                                            Entropy (8bit):5.464890802945206
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:MbW3XIGQTW9ls9DymW643RAyN1zyg9jX0AJ/TuLECs6WrsPQ05u:Mb4M6ls4mW643GAjEAJ/SLE6pPQ00
                                                                                                                                            MD5:9EB930ED036C2828877BBEAED94071B2
                                                                                                                                            SHA1:B410F1CBD1774FD2036C5E8424022554B1FC61F9
                                                                                                                                            SHA-256:502AB41D852C69EA961DF20B79480FD9D38F99BBAD07A4D1B5E7143BA1F7BDC3
                                                                                                                                            SHA-512:86A0C8C6ED19C801705D0CD07A5634C6D234329D4A3AFC10F2E221ABE6A21DEA0F3CB808E2DAF94BDF113B64B7ACDE6AC836BA238D9F8B5F7BB355DA1346E402
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.;G..y.AG..z.PG..|.VG..}.hG....pG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....#H....%H....)H....5H....AH....JH....ZH....iH....~H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.'I..+.*I..,.HI../.bI..0.oI..1..I..2..I..3..I..4..I..5..I..6..J..7.5J..>.NJ..?.VJ..N.eJ..g.oJ..i.rJ..j.vJ..k.}J..l..J...].J...].J...].J...]}K...].K...].K...].K...].K...].L...] L...].L...].M...].M...].M...^-M...^3M...^MM...^tM...^.M...^ N...^%N...^UN...^dN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^.O..%^.O..&^1O..'^?O..)^.O..*^.O..+^.O..,^.O..-^.O...^.O../^.P..0^tP..1^.P..2^LQ..3^^Q..4^.Q..5^.Q..8^.Q..9^(R..:^.R..;^.R..<^.R..>^$S..?^.S..@^.T..A^.T..B^.T..C^FT..D^>U..E^.U..F^.V..G^RV..I^lV..K^tV..L^.V..M^.V..N^.V..O^.V..T^.W..U^+W..V^.W..W^.W..X^.W..Y^.W..Z^AX..[^.X..\^.X..]^.X..b^gY..d^nY..e^qY..f^vY..g^.Y..h^.Y..i^.Y..j^.Y..k^.Y..l^.Y..o^.Y..p^.Z..q^DZ..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):190789
                                                                                                                                            Entropy (8bit):5.232451563180468
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:feMIukF6X+94Raw9a8V+6NS9/W2ESEmSzR2XhmN4o6XsumhdBfOpfVKb8YIO/ECs:uvkXw4Raw9a8V+6NS9/W2ESEmSV2Xhm0
                                                                                                                                            MD5:993FFA47D0354C2A9B9B4D378026E653
                                                                                                                                            SHA1:416EF059058FAE7E91D79E94C0AE4CC56D604F3B
                                                                                                                                            SHA-256:309CEC5292EE0361D45796C2234CF40A064249DA09108B1DA75BF570963941A2
                                                                                                                                            SHA-512:D1ED53F52858090641058AD924E42BAD29610E8E7546279325335C4D8EB9F5830FFE32FA35DACB18040090078A4466199A586D3EA4E82247B73BAB02ECEB17C7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........P.j.,F..k.;F..l.FF..n.NF..o.SF..p.`F..q.fF..r.uF..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....G.....G.....G.....G.....G....bG....|G.....G.....G.....G.....G.....G.....G.....H....$H....JH....gH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I....oI.....I..*..I..+..I..,..I../..I..0..J..1.GJ..2.VJ..3.iJ..4..J..5..J..6.,K..7.dK..>..K..?..K..N..K..g..K..i..K..j..K..k..K..l..K...].K...]CL...]nL...]lM...].M...].M...].M...].N...]lN...].N...]YP...].P...].P...].P...^.P...^.P...^"Q...^kQ...^GR...^.R...^.R...^.R...^.S...^>S...^HS...^pS...^.S...^.S...^.T...^)T...^GT..%^QT..&^mT..'^.T..)^.T..*^(U..+^CU..,^_U..-^gU...^.U../^.U..0^.V..1^.W..2^.X..3^.X..4^.X..5^.Y..8^)Y..9^.Z..:^K[..;^l[..<^.[..>^.[..?^.\..@^.]..A^.]..B^.]..C^.]..D^_`..E^Ua..F^Kb..G^.b..K^.b..L^.c..M^.c..N^)c..O^nc..T^.c..U^Kd..V^.d..W^.e..X^*e..Y^he..Z^.e..[^rf..\^.f..]^'g..b^.g..d^.g..e^.h..f^.h..g^3h..h^Qh..i^rh..j^sh..k^.h..l^.h..o^.h..p^.h..q^-i..r^.i..s^.i..t^.j..v^!j
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):125760
                                                                                                                                            Entropy (8bit):5.447273613792246
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:12KehY+NQoWmiTUqyUEvU2yjZEE218YWUzl3HRFj8mlQAJ/rjNM177Apf:1rehHugj+2lE218YWUzZ3jhXf
                                                                                                                                            MD5:DD7E21B02BDCED910A171D592FAE0B18
                                                                                                                                            SHA1:CC28F1B8F0B06E71DAC3802EE26F644837982FA5
                                                                                                                                            SHA-256:9E1C20ECDBE9D15386ED493D0AC839612CC91A2284D5A97D9DC38EA2C90A3DC1
                                                                                                                                            SHA-512:12B3FD4BA110087074D5BEF6237EEBA96EDEFBCC31BB701142DA058034AF591A627B7B07550670689733A32C747991AE4555884796D29631B7865D06B13E90F7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........#.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z. G..|.&G..}.8G....@G....EG....MG....UG....]G....dG....kG....rG....sG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....%H....7H....FH....UH....\H...._H....`H....iH....qH....xH....}H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.)I..0.7I..1.oI..2.}I..3..I..4..I..5..I..6..I..7..J..>.;J..?.DJ..N.cJ..g.nJ..i.qJ..j.uJ..k.zJ..l..J...].J...].J...].J...]gK...]lK...].K...].K...].K...].K...].L...].L...].M...].M...].M...^!M...^*M...^=M...^mM...^.M...^.N...^.N...^2N...^@N...^_N...^dN...^sN...^.N...^.N...^.N...^.N...^.N..%^.N..&^.O..'^.O..)^VO..*^{O..+^.O..,^.O..-^.O...^.O../^.O..0^VP..1^.P..2^.Q..3^+Q..4^UQ..5^bQ..8^.Q..9^.R..:^.R..;^.R..<^.R..>^"S..?^.S..@^.S..A^.S..B^.T..C^*T..D^.U..E^.U..F^.V..G^5V..I^UV..K^YV..L^gV..M^sV..N^.V..O^.V..T^.V..U^.W..V^`W..W^rW..X^.W..Y^.W..Z^.W..[^>X..\^.X..]^.X..b^.Y..d^ Y..e^(Y..f^-Y..g^DY..h^[Y..i^qY..j^rY..k^.Y..l^.Y..o^.Y..p^.Y..q^.Y..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):140356
                                                                                                                                            Entropy (8bit):5.190245344679947
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:zm5fD0udgYRiHX9ooz8p9wYgEAJX0AaCz36/6pS55:oDoYAyoopbA7s5
                                                                                                                                            MD5:9F3A970C8FED49AC50BDDBF09DD9A950
                                                                                                                                            SHA1:E8B986D42D4A79C513BF2DA3D3314FBF55A2A960
                                                                                                                                            SHA-256:7A4C4822516F47CDBABC4B9EF45B710B057A056BC29D3A4A270A22E963E257D3
                                                                                                                                            SHA-512:4533A05B38E45F8CEDFFDECEFB77ED9AF44ABA799F030A770B616EC7867FD0D7893DE67528A611D1002D18E3EE7F8799944804E008EC8217CBF59E03A19139B5
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..G..s..G..t..G..v.0G..w.=G..y.CG..z.RG..|.XG..}.jG....rG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....!H....#H....'H....-H....7H....@H....WH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H....2I....YI..*.gI..+.jI..,..I../..I..0..I..1..I..2..I..3..I..4..J..5.5J..6.nJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]0K...].K...].K...].K...].K...].L...]EL...]ZL...].M...].M...].M...].M...^.M...^.M...^.M...^&N...^.N...^.N...^.N...^.O...^.O...^)O...^3O...^MO...^fO...^zO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^EP..*^gP..+^wP..,^.P..-^.P...^.P../^.P..0^>Q..1^.Q..2^.R..3^5R..4^fR..5^~R..8^.R..9^,S..:^.S..;^.T..<^.T..>^JT..?^.T..@^YU..A^eU..B^yU..C^.U..D^.W..E^.W..F^vX..G^.X..I^.X..K^.X..L^.X..M^.Y..N^.Y..O^;Y..T^.Y..U^.Y..V^.Z..W^2Z..X^IZ..Y^yZ..Z^.Z..[^1[..\^.[..]^.[..b^X\..c^c\..d^k\..e^p\..f^t\..g^.\..h^.\..i^.\..j^.\..k^.\..l^.\..o^.\..p^ ]..q^?]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):145490
                                                                                                                                            Entropy (8bit):5.383401113888468
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:jAJQbq5J3EqQRLbEKdG2Hr+6y9Z85Nt3lsnEpS0NRHD7AJ/dIzKByroFDuFcVRSh:0J4q5REqQRLgEG2Hr+6y9Z85Nt3mnEpL
                                                                                                                                            MD5:B7AD524464A61CFE4A5BE1D41C069D4B
                                                                                                                                            SHA1:9EB5C98999D5EA3B0BE56DDEC39BAF58BA5EB078
                                                                                                                                            SHA-256:5B9951426B8783B203B8ED44EBAB916CA8AF020B9E0A32F7249ED9021CCE1C3C
                                                                                                                                            SHA-512:9B6B3274A98097E79DA946B90DA8B0A50575D202A8D76A07868CE03BCAC69C1B848A9A28A55814683E44C8760E5D7A0F25CFF18C974349FB393B9BDAAAADA8E4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.(G..|..G..}.@G....HG....MG....UG....]G....eG....lG....sG....zG....{G....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....7H....NH....fH....mH....pH....qH....yH.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.9I../.PI..0.^I..1..I..2..I..3..I..4..I..5..I..6.BJ..7.SJ..>.kJ..?.vJ..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].K...]4L...]HL...]jM...]}M...].M...].M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^%O...^.O...^EO...^hO...^.O...^.O...^.O...^.O..%^.O..&^.P..'^ P..)^sP..*^.P..+^.P..-^.P...^.P../^.Q..0^.Q..1^2R..2^.R..3^.R..4^.S..5^.S..8^6S..9^.S..:^.T..;^.T..<^.T..>^.T..?^.U..@^?V..A^RV..B^oV..C^.V..D^SX..E^$Y..F^.Y..G^)Z..K^UZ..L^hZ..M^rZ..N^.Z..O^.Z..T^.[..U^2[..V^.[..W^.[..X^.[..Y^.\..Z^.\..[^.\..\^Z]..]^.]..b^H^..c^Q^..d^X^..e^\^..f^b^..g^{^..h^.^..i^.^..j^.^..k^.^..l^.^..o^.^..p^._..q^0_..r^s_..s^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):265683
                                                                                                                                            Entropy (8bit):4.514931934952092
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:/Ufs9FfYNDx39v+1lT1A626EysP8n3M8IrU35YdO3C36SoYimPVOyVWcTPgrmd/U:XXfsLPVTAf
                                                                                                                                            MD5:45943AE45049D9B7D76068D3721D6C8F
                                                                                                                                            SHA1:0BC3F9B24F0C8CA0078AC7780A21F623B8D7F9E6
                                                                                                                                            SHA-256:AA885CBBF8A13FB95405CC3DCA6677545FD51E303A65897D14ED019955C040DA
                                                                                                                                            SHA-512:7CD2BEC685CE103DCB0900BE832C472BCD1619F549FFC2864A2AE61B60B06565ACC95DC25222521E192362F8D3C4F8816BD1C3438AF7BAD826561247326CBA99
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........2.j.hF..k.wF..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}..G...."G....'G..../G....7G....?G....FG....MG....TG....UG....VG.....G.....G.....H....BH....zH....|H.....H.....H.....H.....H.....I....+I....XI....|I.....I.....I.....I.....I.....I.....I.....I.....J....$J....0J....RJ.....J.....J..*..K..+..K..,.-K../.aK..0..K..1..K..2..L..3.$L..4.XL..5..L..6..L..7.%M..>..M..?..M..N..M..g..M..i..M..j..M..k..M..l..M...].M...]FN...].N...].O...].O...]&P...]iP...].P...]>Q...]dQ...]4T...]\T...]eT...]zT...^.T...^.T...^/U...^.U...^.V...^.V...^.W...^^W...^zW...^.W...^.W...^.W...^4X...^`X...^.Y...^0Y...^aY..%^pY..&^.Y..'^.Y..)^\Z..*^.Z..+^.Z..,^.Z..-^.[...^E[../^.[..0^.\..1^.]..2^.^..3^.^..4^%_..5^N_..8^._..9^.`..:^.b..;^.b..<^.b..>^ic..?^.d..@^.e..A^.e..B^.f..C^.f..D^&j..E^.k..F^.l..G^em..I^.m..K^.m..L^.m..M^.n..N^+n..O^.n..T^6o..U^.o..V^.p..W^.p..X^.p..Y^Vq..Z^?r..[^.s..\^.s..]^.t..b^Vu..c^ru..d^.u..e^.u..f^.u..g^.u..h^]v..i^.v..j^.v..k^.v..l^.v..o^Bw..p^.w..q^.w
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):167370
                                                                                                                                            Entropy (8bit):4.897123170448971
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:04dRCZfyn1pNz+WxgbllqMPnXQ5r1GAJ/m3XTnw6jCPQt:FRqK1pNzwbllqMPnXQ5r1UXTnw6jCPQt
                                                                                                                                            MD5:3716C23FA0D68B698F5FD41153757622
                                                                                                                                            SHA1:800CC99237FD8C2151C90E01D6C78978617C0F27
                                                                                                                                            SHA-256:45E428FE527BCC746039A9822DB7F5DF12FD651452209A8746182383C2C004EC
                                                                                                                                            SHA-512:D738DA7FBB6BDA597F2C381C533BA70B8E0A8417E943A17FC91AF455492B04E7607CDD89EB3CB6D2D70F0B87BF89BFBD6FD96DF18603F0FAE485FEE9C7FFFD70
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........=.j.RF..k.aF..l.lF..n.tF..o.yF..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G....!G....)G....0G....7G....>G....?G....@G.....G.....G.....G.....G.....G.....G.....G.....H....,H....?H....VH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....TI....{I..*..I..+..I..,..I../..I..0..I..1..J..2..J..3.*J..4.NJ..5.}J..6..J..7..J..>..J..?..K..N..K..g.&K..i.)K..j.-K..k.2K..l.:K...]?K...]tK...].K...]cL...]pL...].L...].L...].L...]GM...]cM...].O...].O...].O...].P...^$P...^0P...^[P...^.P...^[Q...^.Q...^.Q...^.Q...^.R...^:R...^BR...^QR...^uR...^.R...^.R...^.R...^.R..%^.S..&^$S..'^;S..)^.S..*^.S..+^.S..,^.S..-^.T...^-T../^iT..0^.T..1^.U..2^/V..3^GV..4^yV..5^.V..8^.V..9^`W..:^OX..;^lX..<^.X..>^.X..?^xY..@^fZ..A^xZ..B^.Z..C^.Z..D^T]..E^~^..F^._..G^.`..I^5`..K^?`..L^V`..M^c`..N^x`..O^.`..T^.a..U^Aa..V^.a..W^.a..X^.b..Y^Zb..Z^.b..[^%c..\^.c..]^.c..b^od..c^yd..d^.d..e^.d..f^.d..g^.d..h^.d..i^.d..j^.d..k^.e..l^.e..o^6e..p^pe..q^.e
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):273942
                                                                                                                                            Entropy (8bit):4.493588587563909
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:RIfyKM/nqz5cwfKSIvYh0b3cvEVhYWVLAogCO/S/Ffm9NLmILORvTHIf+ovahgBD:RxKqLCFP
                                                                                                                                            MD5:0CE87D6655517DCB4D74E5130F235C89
                                                                                                                                            SHA1:0A61C0E385523BC55B3AB2435E7D1231548D3BD2
                                                                                                                                            SHA-256:79FC8A24C93E19ED052DDC0F158E516198A10DF7280265CCB769EE196A438CD7
                                                                                                                                            SHA-512:18ED9D0D354CD8DE96A54A6F793E6C59FF476F02106F7C3CA309175DFBDB00271AA3290BA9805F1B9484E7FAF2CC44E3AC93AA69B7D30C8E99EE31E29D7E4808
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........A.j.JF..k.YF..l.dF..n.lF..o.qF..p.~F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....G.....G.....G.....G....!G....(G..../G....6G....7G....8G.....G.....G.....H....<H....mH....oH....sH.....H.....H.....H.....H.....I....FI....pI....wI....zI....|I.....I.....I.....I.....I.....J....*J....CJ....YJ.....J.....J..*..K..+..K..,.-K../.mK..0..K..1..L..2.#L..3.CL..4..L..5..L..6..M..7.YM..>..M..?..M..N..M..g..N..i..N..j..N..k. N..l..N...]3N...].N...]SO...].Q...].Q...].R...]FR...].R...]2S...]^S...].V...].V...].V...].V...^TW...^fW...^.W...^!X...^.Y...^8Z...^NZ...^.[...^:[...^.[...^.[...^.\...^c\...^.\...^:]...^^]...^z]..%^.]..&^.]..'^.]..)^.^..*^.^..+^._..,^G_..-^W_...^._../^.`..0^.a..1^.a..2^.b..3^.c..4^^c..5^.c..8^.c..9^.e..:^.f..;^.f..<^.g..>^.g..?^.h..@^.i..A^$j..B^Uj..C^.j..D^.m..E^.o..F^Ap..G^.p..I^.q..K^.q..L^;q..M^Mq..N^lq..O^.r..T^?s..U^.s..V^.t..W^.t..X^.t..Y^2u..Z^.v..[^.v..\^.w..]^Dx..b^xy..d^.y..e^.y..f^.y..g^.y..h^Bz..i^.z..j^.z..k^.z..l^.z..o^#{..p^.{..q^I|..r^.|
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133955
                                                                                                                                            Entropy (8bit):5.502579129345829
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:3EFk7trSBVqKRgAGCv1ljWNqcUlEdp9qLnMUpE+ugAJ/IMMoqa721Ox9s:UFPBVb6q3
                                                                                                                                            MD5:B8A77FDFDF62A844C90FE62DE0B6858A
                                                                                                                                            SHA1:B601AB105FCB328AF4B17B3E1DBEBF94ECDDAB33
                                                                                                                                            SHA-256:AD13BAB195D7619C58494D592CB11C22DDDCF3B2735804BE60F951F87DDD734B
                                                                                                                                            SHA-512:164122955B11EAF5E88BC61366C473B7A67C12B858BDAB407C189DC74ACA75C406075BFC0BD5877FA0B3857BA5DAD81C9795EB55D3DBE7EADA67B03D1BFAA442
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....%H....8H....NH....dH....kH....nH....oH....zH.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.4I../.MI..0.SI..1..I..2..I..3..I..4..I..5..I..6.%J..7.>J..>.XJ..?.aJ..N.rJ..g.{J..i.~J..j..J..k..J..l..J...].J...].J...].J...]xK...].K...].K...].K...].K...].K...].L...].M...].M...].M...].M...^.M...^.M...^.N...^>N...^.N...^.N...^.O...^,O...^<O...^oO...^vO...^.O...^.O...^.O...^.O...^.O...^.O..%^.P..&^ P..'^1P..)^yP..*^.P..+^.P..,^.P..-^.P...^.P../^.Q..0^.Q..1^.Q..2^LR..3^`R..4^.R..5^.R..8^.R..9^%S..:^.S..;^.S..<^.T..>^BT..?^.T..@^zU..A^.U..B^.U..C^.U..D^.W..E^.X..F^yY..G^.Y..I^.Y..K^.Y..L^.Y..M^.Y..N^.Z..O^1Z..T^pZ..U^.Z..V^.Z..W^.[..X^-[..Y^U[..Z^.[..[^.\..\^Z\..]^.\..b^.]..d^.]..e^"]..f^(]..g^@]..h^U]..i^g]..j^h]..k^{]..l^~]..o^.]..p^.]..q^.^..r^H^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):144547
                                                                                                                                            Entropy (8bit):5.634145281802686
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:BfOMF2+rAIR7rjgIHmMRHiGhj8oAJ/kgCdAtRdpEsLK5M3ICm:BfnQ+rxRDjxiGhgjRdpEB63ICm
                                                                                                                                            MD5:873CA729BBFEAB336795E1696289B191
                                                                                                                                            SHA1:BEF9CC201BCA2D433E2DC183C96425A542BC3F01
                                                                                                                                            SHA-256:D7C29C66D265129EDE1019C708BD0A358D6B820366509845834752EC2EF705DA
                                                                                                                                            SHA-512:2973C94779893C1F4D8725677355D71EDEA2599077EEFE7DAD6D4E4392AB036C0633440D2578A2D51947007ADF9DFE859F9B50E39CE7D7482992D5A3790CFDC4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z..G..|.4G..}.FG....NG....SG....[G....cG....kG....rG....yG.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H...."H....)H....>H....SH....mH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I.....I....QI....sI..*.|I..+..I..,..I../..I..0..I..1..I..2..I..3..J..4.%J..5.GJ..6..J..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].K...]2K...]TK...].L...]"L...]TL...]vL...].L...].L...].L...].M...].N...].N...].N...^+N...^9N...^LN...^yN...^.O...^DO...^MO...^xO...^.O...^.O...^.O...^.O...^.O...^.O...^)P...^9P...^KP..%^RP..&^dP..'^tP..)^.P..*^.P..+^.P..,^.P..-^.Q...^ Q../^@Q..0^.Q..1^$R..2^.R..3^.R..4^.R..5^.R..8^.S..9^.S..:^sT..;^.T..<^.T..>^.T..?^dU..@^.U..A^.U..B^.U..C^.V..D^.W..E^.W..F^.X..G^XX..I^.X..K^.X..L^.X..M^.X..N^.X..O^.X..T^CY..U^lY..V^.Y..W^.Y..X^.Z..Y^UZ..Z^.Z..[^ [..\^.[..]^.[..b^o\..c^}\..d^.\..e^.\..f^.\..g^.\..h^.\..i^.\..j^.\..k^.\..l^.\..o^.]..p^P]..q^.]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):121818
                                                                                                                                            Entropy (8bit):5.360373815575629
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:3ZKQj9ZZpz495KWVce03AJX/8WsAzaZ6N3cCEL:JKQjxpMvtRsEaR
                                                                                                                                            MD5:E61A4D062CD61972A534A5E86E49C34D
                                                                                                                                            SHA1:C19BE8F744B956753CE40D91A34F0DA02F699FFA
                                                                                                                                            SHA-256:D00C7EE5EDEB1BD1493C49CF2D124FFDF47405D21D8D43C1A41C8749CE5C86A3
                                                                                                                                            SHA-512:7DE4453B0793DDE96503E762D4E9A77835DDBB1D75D35F012D24E8453A90AC85F87B0A62D95AD68393901A8AC3FCB147CF2B7BD468DFFA62D959133528AF15F9
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........$.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z..G..|.$G..}.6G....>G....CG....KG....SG....[G....bG....iG....pG....qG....rG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....4H....IH....PH....SH....TH....\H....dH....lH....qH....wH.....H.....H.....H.....H.....H..*..H..+..H..,..I../..I..0..I..1.II..2.[I..3.eI..4..I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k.!J..l.)J...].J...]VJ...]pJ...].K...].K...],K...];K...]jK...]yK...]hL...].L...].L...].L...^.L...^.L...^.L...^.L...^^M...^.M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^*N...^iN...^rN...^.N..%^.N..&^.N..'^.N..)^.N..*^.N..+^.O..,^.O..-^.O...^4O../^fO..0^.O..1^;P..2^.P..3^.P..4^.P..5^.P..8^.Q..9^.Q..:^SR..;^bR..<^tR..>^.R..?^.S..@^qS..A^.S..B^.S..C^.S..D^.T..E^.U..F^{U..G^.U..I^.U..K^.U..L^.U..M^.U..N^.V..O^.V..T^^V..U^.V..V^.V..W^.V..X^.W..Y^+W..Z^.W..[^.W..\^.X..]^=X..b^.X..c^.X..d^.X..e^.X..f^.X..g^.X..h^.Y..i^&Y..j^'Y..k^5Y..l^8Y..o^QY..p^uY..q^.Y..r^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):134374
                                                                                                                                            Entropy (8bit):5.276015939200961
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:UbhWa92N5TAgX3OEKDoLx1NyN4tA7kxAjidqoxAJXsPdo80Juz:khWdN5TAgX3OBcLx7yN4tA7kxAjiJlow
                                                                                                                                            MD5:A2E2D2B990CFFD395772D2F146084775
                                                                                                                                            SHA1:30EB2B67223104E72FD4CBD3448B01442928FC56
                                                                                                                                            SHA-256:27C74ECE0AA92E15D2F26628C4E132AF03A6DB5384E24504932C45912ABA7268
                                                                                                                                            SHA-512:8D874A43DC7FD2933CE4B81C8CB8D17C709E1947CCA8867614F726A34600F8B59689FB7DF50C7502FC21CC99785074723E4502622C677E5239D598CAC8962E00
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y.%G..z.4G..|.:G..}.LG....TG....YG....aG....iG....qG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....CH....VH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....+I..*.7I..+.:I..,.XI../.iI..0.nI..1..I..2..I..3..I..4..I..5..J..6.`J..7.pJ..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].L...]ZL...]gL...]NM...]tM...]|M...].M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^.O...^%O...^9O...^VO...^gO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^)P..*^SP..+^`P..,^qP..-^uP...^.P../^.P..0^.Q..1^.Q..2^.R..3^#R..4^NR..5^`R..8^zR..9^.S..:^.S..;^.S..<^.T..>^BT..?^.T..@^%U..A^0U..B^AU..C^rU..D^.V..E^.W..F^.W..G^.W..K^.X..L^"X..M^,X..N^9X..O^^X..T^.X..U^.X..V^@Y..W^fY..X^wY..Y^.Y..Z^.Z..[^pZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.[..j^.[..k^.\..l^.\..o^0\..p^Q\..q^p\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):159139
                                                                                                                                            Entropy (8bit):5.873398037642396
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:oItCbyjIPthibF3MkCRAJ/2ijt+FC1yNLAVv:tLyAVv
                                                                                                                                            MD5:0553C4D65C38A5AFB98A0EE8F420A207
                                                                                                                                            SHA1:C6011AB07BC0B1E036BF564BE6F4D65C24E7D3E4
                                                                                                                                            SHA-256:C2BAD3C397CC41210E1D5D1D04A7185F9287C670E285D30C66235F5807B39FCF
                                                                                                                                            SHA-512:F3B9636A93BA77C1BD00D491710ADB221F570A30D1B5ADC50B8E263165B81A17C062ACA1CB656314140A512CD7E69F583DA781EE4C8929A1305E743361A3B030
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........h.j..E..k..F..l..F..m..F..o.3F..p.@F..q.FF..v.UF..w.bF..y.hF..z.wF..|.}F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F....&G....?G....]G....~G.....G.....G.....G.....G.....G.....G.....G.....G...."H....KH....RH....UH....^H....gH....mH....vH.....H.....H.....H.....H.....H.....I..*. I..+.#I..,.EI../.aI..0.jI..1..I..2..I..3..I..4..I..5..J..6.oJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...];K...]bK...]:L...]@L...]pL...].L...].L...].L...]<N...]QN...]WN...]fN...^{N...^.N...^.N...^.N...^.O...^.O...^)P...^AP...^\P...^bP...^.P...^.P...^.P...^.Q...^.Q...^(Q..%^.Q..&^OQ..'^aQ..)^.Q..*^.Q..+^.R..,^%R..-^+R...^LR../^vR..0^.S..1^.S..2^.T..3^.T..4^VT..5^eT..8^zT..9^.U..:^.U..;^.U..<^.V..>^oV..?^.W..@^~W..A^.W..B^.W..C^.W..D^.X..E^sY..F^.Y..G^LZ..I^sZ..K^.Z..L^.Z..M^.Z..N^.Z..O^.Z..T^>[..U^n[..V^.[..W^.\..X^.\..Y^;\..Z^.\..[^.\..\^W]..]^.]..b^)^..d^/^..e^2^..f^5^..g^Y^..h^w^..i^.^..j^.^..k^.^..l^.^..o^.^..p^*_..q^Y_..r^._..s^._..t^._..v^._..x^.`
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):299517
                                                                                                                                            Entropy (8bit):4.421440980554494
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:dR3ENI+2gRlXEgkndwm+PDu6h1TS/Z7JQO6aym:dR3EhRl07+VBm
                                                                                                                                            MD5:33BC5AC34A95379D58F9C42CB21A92E4
                                                                                                                                            SHA1:0F4EF0A9A40E9042F3B744B5B87FCF00C08FD7E1
                                                                                                                                            SHA-256:99C8C57A808C63088D3E7B83DCF7CF80FB2A648D678A7C9473F2B5CC0BEF8152
                                                                                                                                            SHA-512:62DB9B5781B6C218E39BF7D4E47614FAF2EDB496A51E0B4E802047D57639890F13A4B4F84B6326FBDF6218B8991A0456DC5BB1473436CC74AF4E54283BB3BF13
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........../.j.nF..k.}F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}. G....(G....-G....5G....=G....EG....LG....SG....ZG....[G....\G.....G....%H....\H.....H.....H.....H.....H.....I....-I....^I.....I.....I.....J....@J....GJ....JJ....LJ....dJ.....J.....J.....J.....J.....J.....K....%K.....K.....K..*..K..+..L..,. L../.QL..0.oL..1..M..2..M..3.4M..4..M..5..M..6.RN..7..N..>..N..?..N..N.1O..g.MO..i.PO..j.TO..k.YO..l.gO...]lO...].O...]=P...].Q...].Q...]5R...]xR...].R...]%S...]qS...]WV...].V...].V...].V...^.V...^.W...^hW...^.W...^2Y...^.Y...^.Y...^+Z...^JZ...^.Z...^.Z...^.Z...^.[...^D[...^!\...^J\...^u\..%^.\..&^.\..'^.\..)^.]..*^.]..+^.^..,^X^..-^p^...^.^../^?_..0^z`..1^~a..2^.b..3^.b..4^ c..5^Tc..8^.c..9^Ce..:^Tg..;^kg..<^.g..>^Sh..?^.i..@^.j..A^Wk..B^.k..C^.k..D^.o..E^kq..F^.r..G^.s..K^.s..L^.t..M^@t..N^qt..O^.t..T^.u..U^Av..V^fw..W^.w..X^.w..Y^bx..Z^_y..[^?z..\^#{..]^.{..b^.|..c^.}..d^$}..e^6}..f^B}..g^.}..h^.}..i^/~..j^0~..k^h~..l^k~..o^.~..p^....q^m...r^1.
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):134295
                                                                                                                                            Entropy (8bit):6.191082491321746
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:qc7oyh7cbcQ4G+othXuAgWCYeHw0pFSCukpHTezNsAJ/r/4KiWgx1D/xRAmxJT6e:JV7cQGbtd5EdSwxn
                                                                                                                                            MD5:7FF011AE4E5FFD05736F99888AE9A8CB
                                                                                                                                            SHA1:544BF65AB5FE462FAADCDA88E2E5DB0009169123
                                                                                                                                            SHA-256:5BA83651D941CB9F87B961F735D5BFB0E249878255129BE1D8E8D6BA5D903D76
                                                                                                                                            SHA-512:BAA72F1A5561FD67A047309255CA799A55365D6D755324313E86E26AE9F3A8209AF7AF24C1A9BA83FAA441CF49FB843D9AD1FAB4B76354B0800EDFD9A2AE21F7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........o.j..E..k..E..l..F..m..F..o..F..p..F..q..F..r.-F..s.>F..t.GF..y.\F..z.kF..|.qF..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....G.....G....'G....:G....JG....LG....PG....\G....cG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....XH....jH..*.wH..+.zH..,..H../..H..0..H..1..I..2.#I..3./I..4.NI..5.vI..6..I..7..I..>..I..?..I..N..I..g..J..i..J..j..J..k..J..l."J...]'J...]SJ...]}J...].K...].K...]CK...]TK...].K...].K...].L...].L...].L...].L...^.L...^.L...^.L...^.M...^.M...^.M...^.M...^.N...^.N...^/N...^5N...^BN...^ON...^_N...^.N...^.N...^.N..%^.N..&^.N..'^.O..)^NO..*^.O..+^.O..,^.O..-^.O...^.O../^.O..0^tP..1^.P..2^lQ..3^.Q..4^.Q..5^.Q..8^.Q..9^yR..:^tS..;^.S..<^.S..>^.S..?^PT..@^.T..A^.T..B^.T..C^.T..D^.V..E^.V..F^.W..G^aW..K^.W..L^.W..M^.W..N^.W..O^.W..T^<X..U^oX..V^.X..W^.X..X^.Y..Y^5Y..Z^.Y..[^.Y..\^3Z..]^XZ..d^.Z..e^.Z..f^.Z..g^.[..h^,[..i^F[..j^G[..k^Z[..l^][..o^q[..p^.[..q^.[..r^.\..s^.\..t^S\..v^\\..x^p\..y^v\..z^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):146763
                                                                                                                                            Entropy (8bit):5.624470493823786
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:lD0hfQBDyyUa5I2dAJ/9bXpwh2I76S1l5nJ:edQ0Pa5IFbXpwh2I76SX
                                                                                                                                            MD5:90847DC4F0387C80DD00BAD7B001A879
                                                                                                                                            SHA1:B7543FA3A3185201EACB2CBEB1F6EF667CCA10B1
                                                                                                                                            SHA-256:FB5BB8AA591D3D8D7557FB296317C30DB3C4D5C9F438FE0A43A94B974B9286A1
                                                                                                                                            SHA-512:19ED2F2B9D71F00A81EE93C776EE9B2D4D6283CB5ADB280A30EB8ADB9BE53A2D007D267DD8143FE7EB98AB909DBC88B16BC7E4167717D3F4EEC3B1C7DCEB8B1B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....,H....?H....QH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....-I..*.:I..+.=I..,.[I../..I..0..I..1..I..2..I..3..I..4..I..5.%J..6.tJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..K...].K...];K...]OK...].K...].K...]#L...]4L...]DL...].L...].L...].O...])O...]2O...]JO...^]O...^gO...^.O...^.O...^BP...^jP...^rP...^.P...^.P...^.P...^.P...^.P...^.Q...^.Q...^TQ...^^Q...^rQ..%^|Q..&^.Q..'^.Q..)^.Q..*^.R..+^2R..,^CR..-^JR...^gR../^.R..0^.S..1^.S..2^(T..3^BT..4^rT..5^.T..8^.T..9^5U..:^.U..;^.V..<^#V..>^LV..?^.V..@^.W..A^.W..B^.W..C^.X..D^HZ..E^.[..F^.\..G^.\..I^.]..K^!]..L^7]..M^@]..N^S]..O^.]..T^.]..U^.^..V^s^..W^.^..X^.^..Y^._..Z^u_..[^._..\^&`..]^f`..b^1a..d^<a..e^Ba..f^Ga..g^_a..h^sa..i^.a..j^.a..k^.a..l^.a..o^.a..p^.a..q^.b..r^Db
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):145384
                                                                                                                                            Entropy (8bit):5.624257022055004
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:EVo9zC3sdc2eT4mPGojE7+Gv9AA7dNIM8cAJ/7AMfZ1j:EV+zrdc2eT4mPG/7V9AA7dNIhjAMZ1j
                                                                                                                                            MD5:61EE8D708739FB4BB33F37BFFBA745AE
                                                                                                                                            SHA1:7173073DDDD29E4688B922297EEC471AE8B0FDF9
                                                                                                                                            SHA-256:F944E3DBBE9694EF7C111E1A0BF91F5B0229B7C3CA221F54C253276242C281F8
                                                                                                                                            SHA-512:25FDFC2EBBF7D408D9570DA3D55D9722C912B2995DE9E73449B8CDE8C0EBB3C25B38E70F66681CBF39D791F151194C85146D95EF59A7B43E7E64B0169B49E2A7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..G..s..G..t..G..v.0G..w.=G..y.CG..z.RG..|.XG..}.jG....rG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....#H....%H....)H....0H....;H....KH....^H....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....OI..*.\I..+._I..,.}I../..I..0..I..1..I..2..I..3..J..4..J..5.@J..6.{J..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]/K...].K...].K...].L...].L...]<L...]zL...].L...]eN...]{N...].N...].N...^.N...^.N...^.N...^.O...^.O...^.O...^.O...^.O...^.P...^&P...^/P...^DP...^_P...^.P...^.P...^.P...^.P..%^.P..&^.P..'^.Q..)^NQ..*^xQ..+^.Q..,^.Q..-^.Q...^.Q../^.Q..0^gR..1^.R..2^KS..3^kS..4^.S..5^.S..8^.S..9^QT..:^.U..;^/U..<^RU..>^.U..?^.U..@^.V..A^.V..B^.V..C^.W..D^.Y..E^.Z..F^.Z..G^.[..I^0[..K^6[..L^D[..M^O[..N^\[..O^.[..T^.[..U^.[..V^U\..W^r\..X^.\..Y^.\..Z^.]..[^`]..\^.]..]^.]..b^`^..c^l^..d^v^..e^~^..f^.^..g^.^..h^.^..i^.^..j^.^..k^.^..l^.^..o^._..p^L_..q^m_
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):315496
                                                                                                                                            Entropy (8bit):4.438433180200473
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:Jdi0gvoO1Ouu1ElYBkPQ4z6GXdubbTMAJ/I23j:virvn1OuuyPQE6GXduHTMAJ//3j
                                                                                                                                            MD5:6183544A4F554D40A211C8E0376C95AA
                                                                                                                                            SHA1:A9E855BBD03CFEB96DAE4C52E6A577B9F0374184
                                                                                                                                            SHA-256:2B5C12D6628B1835D5658085C04F9DCF0D792DB603A034264E70D86F8D43E044
                                                                                                                                            SHA-512:7C517702F24C92B708DD4EE1D6D5A911213062CFA5AE05C12DA9B2CD4DEC06ED9B218CE88A75AE9A7C9177AF100169F61056B1ECCB9AB3F10811B6E6C99CC86E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j.pF..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}."G....*G..../G....7G....?G....GG....NG....UG....\G....]G....^G.....G.....H....IH.....H.....H.....H.....H.....I.....I....?I.....I.....I.....I....(J..../J....2J....4J....UJ....sJ.....J.....J.....J.....K....0K....NK....)L....TL..*..L..+..L..,..L../..L..0..L..1..M..2..M..3..M..4.+N..5..N..6.%O..7.mO..>..O..?..P..N.5P..g.WP..i.ZP..j.^P..k.cP..l.wP...]|P...].Q...]NQ...]9S...]WS...].S...].S...]%T...].T...].T...].V...]0W...]9W...]ZW...^.W...^.W...^.W...^|X...^.Z...^oZ...^.Z...^.[...^1[...^y[...^.[...^.[...^&\...^M\...^.\...^.]...^A]..%^e]..&^.]..'^.]..)^x^..*^.^..+^._..,^B_..-^i_...^._../^0`..0^ga..1^.b..2^.c..3^.d..4^.d..5^.d..8^.e..9^.f..:^.h..;^.h..<^%i..>^.i..?^.k..@^%l..A^ll..B^.l..C^.m..D^.o..E^.p..F^.q..G^.r..I^.r..K^.s..L^1s..M^Ls..N^.s..O^.s..T^.u..U^.u..V^.v..W^.v..X^7w..Y^.w..Z^.x..[^cy..\^Fz..]^.z..b^e|..d^.|..e^.|..f^.|..g^.|..h^F}..i^.}..j^.}..k^.}..l^.}..o^-~..p^.~..q^.~..r^..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):260776
                                                                                                                                            Entropy (8bit):4.505268866905645
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:aWiUPHuEFAbZPMD6D/Wcq02RCnXUIuc7n3SZhO93AJ/fFlWSLQMD8jB3qAyXyYHA:aWFD/Cn/5
                                                                                                                                            MD5:80B49D820F83133B9EFB9AC2CA102C83
                                                                                                                                            SHA1:6E2D370C74891BEF70768F051E4BA0483D6B5C1E
                                                                                                                                            SHA-256:DF72EACF4938F4912F5BAE563DBE7E81A758A7E8FFD49F14502F6D0B5DAB6F27
                                                                                                                                            SHA-512:AFD58A2ADA72E96423CA1F9E1869C8E1621C22E72A13B90FEC5FD2DBE662D2D9280E3277018D426196AD63CD74CE7406975BD134F577B6B3E5864DA7F0831936
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........D.j.DF..k.SF..l.^F..n.fF..o.kF..p.xF..q.~F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....G.....G.....G.....G...."G....)G....0G....1G....2G.....G.....G.....G.....H...._H....aH....eH.....H.....H.....H.....H.....I.....I....RI....YI....\I....^I....qI.....I.....I.....I.....I.....I.....J.....J....pJ.....J..*..J..+..J..,..J../.*K..0.7K..1..K..2..K..3..K..4..L..5.TL..6..L..7..L..>.>M..?.QM..N..M..g..M..i..M..j..M..k..M..l..M...].M...].N...]yN...].O...].O...]7P...]dP...].P...].P...].R...].R...].R...].S...^@S...^XS...^.S...^.S...^.T...^QU...^`U...^.U...^.U...^.V...^.V...^FV...^.V...^.V...^2W...^IW...^kW..%^.W..&^.W..'^.W..)^.X..*^.Y..+^/Y..,^mY..-^.Y...^.Y../^3Z..0^;[..1^2\..2^,]..3^Z]..4^.]..5^.]..8^*^..9^._..:^Xa..;^oa..<^.a..>^-b..?^}c..@^od..A^.d..B^.d..C^@e..D^.g..E^.h..F^|i..G^.j..I^fj..K^|j..L^.j..M^.j..N^.j..O^6k..T^.k..U^Rl..V^Hm..W^.m..X^.m..Y^An..Z^-o..[^.o..\^.p..]^*q..b^ur..c^.r..d^.r..e^.r..f^.r..g^.s..h^[s..i^.s..j^.s..k^.s..l^.s..o^.t..p^Xt..q^.t..r^.u
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):125611
                                                                                                                                            Entropy (8bit):5.26463363101804
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:6CdXh6S4YO3xDEj2xjBSxAJ/YL6P8u8Jyt:Lh6S4Yg1Eje
                                                                                                                                            MD5:0CDA98188CCC97E932408BED970E2CE1
                                                                                                                                            SHA1:91595881665CC51FBC013EC0A1D212DEA9F70CB5
                                                                                                                                            SHA-256:18C1CD2F95F5C029F308C53774F49E4B718BC94B78FC3029F95457BCC58281D7
                                                                                                                                            SHA-512:4CF8A939ADF3B79537051016D52A0E2C3C10135DC2A652B68D5EA7BB338DAC422D3AD814DDA1902C393083DB55168E12822DD51151302D5770FE599C0B395AB4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z..G..|.4G..}.FG....NG....SG....[G....cG....kG....rG....yG.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....1H....EH....WH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.%I..+.(I..,.FI../.WI..0.aI..1..I..2..I..3..I..4..I..5..I..6..J..7.2J..>.NJ..?.VJ..N.kJ..g.tJ..i.wJ..j.{J..k..J..l..J...].J...].J...].J...]\K...]dK...].K...].K...].K...].K...].L...].L...].L...].L...^.L...^.L...^.M...^3M...^.M...^.M...^.M...^.M...^.N...^.N...^%N...^3N...^QN...^^N...^.N...^.N...^.N..%^.N..&^.N..'^.N..)^+O..*^FO..+^RO..,^ZO..-^aO...^zO../^.O..0^.P..1^lP..2^.P..3^.P..4^.Q..5^.Q..8^2Q..9^.Q..:^cR..;^rR..<^.R..>^.R..?^.S..@^tS..A^.S..B^.S..C^.S..D^.T..E^,U..F^.U..G^.U..I^.U..K^.U..L^.V..M^.V..N^.V..O^8V..T^.V..U^.V..V^.V..W^.W..X^.W..Y^KW..Z^.W..[^.W..\^DX..]^fX..b^.X..d^.Y..e^.Y..f^.Y..g^.Y..h^5Y..i^KY..j^LY..k^ZY..l^]Y..o^uY..p^.Y..q^.Y..r^.Z..s^%Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):124135
                                                                                                                                            Entropy (8bit):5.430025230496119
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:CRF/rikZ7NPdoS2y1SubIsRWYHnfdG4I8F/iX5XzqFlAJ/hIm8VUvCATpdlR0n:+7TIKYstHnVxI8+XzqFlAJ/hIwCcpdi
                                                                                                                                            MD5:00F1A382F8F5E0950CB9BA4A4F3FD478
                                                                                                                                            SHA1:BBA2DE6051BDD9B596F66312F2E2296C370E2D93
                                                                                                                                            SHA-256:E42E748F28E944F9A3A7FAD19E686B856BC60B3E0128DE94E6CD7619A7D24071
                                                                                                                                            SHA-512:2D8F502F51FCF066BF8C420CA2C86FE4EC6274AB0DA5A5266293225910C9A0DFB6D5C529A9FD0DA6FF4952BAC385FCE2885757DE81A4DB2D7F5C10CDDD539C0E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.(G..|..G..}.@G....HG....MG....UG....]G....eG....lG....sG....zG....{G....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....>H....EH....HH....IH....PH....XH....cH....gH....nH....yH.....H.....H.....H.....H..*..H..+..H..,..H../..I..0..I..1.6I..2.BI..3.SI..4.mI..5..I..6..I..7..I..>..I..?..I..N..I..g..J..i..J..j..J..k..J..l..J...]!J...]LJ...]pJ...].K...].K...]=K...]MK...]\K...].K...].K...]@L...]RL...]YL...]bL...^xL...^.L...^.L...^.L...^nM...^.M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^%N...^`N...^hN...^{N..%^.N..&^.N..'^.N..)^.N..*^.O..+^.O..,^)O..-^/O...^DO../^jO..0^.O..1^NP..2^.P..3^.P..4^.P..5^.P..8^.Q..9^oQ..:^.R..;^.R..<^)R..>^UR..?^.R..@^.S..A^/S..B^<S..C^XS..D^FT..E^.T..F^*U..G^oU..I^.U..K^.U..L^.U..M^.U..N^.U..O^.U..T^.V..U^EV..V^.V..W^.V..X^.V..Y^)W..Z^.W..[^.W..\^.X..]^FX..b^.X..d^.X..e^.X..f^.X..g^.Y..h^(Y..i^9Y..j^:Y..k^IY..l^LY..o^eY..p^.Y..q^.Y..r^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):128369
                                                                                                                                            Entropy (8bit):5.355883393524085
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:/PXjFQh8YD5L3O4DjhJk8YIAJ/HgHkIINe2A4Tie1oWnV:/uhzOSYzbYOnV
                                                                                                                                            MD5:2D4BBBF2E9459992252D62AB1A152D30
                                                                                                                                            SHA1:78E696C8B30F2B4A113B72A92C0A011AA7D777BE
                                                                                                                                            SHA-256:4D450B5659EA7BB907728E2B8F48D77A43DC18024E2A15E749F5A760D4144571
                                                                                                                                            SHA-512:3325DBCF891A55E06D2D106046D0E0589DAE5E437B4437B929672150735B38DCF39AFCCF0FADB2C43DD1484F3726ECF9B0EE1641BDE7BB31A84B88790E9CAD55
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....)H....=H....PH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.#I..+.&I..,.DI../.UI..0._I..1..I..2..I..3..I..4..I..5..I..6..J..7.7J..>.TJ..?.aJ..N.pJ..g.}J..i..J..j..J..k..J..l..J...].J...].J...].J...]eK...]mK...].K...].K...].K...].K...].K...].L...].L...].L...].L...^.M...^.M...^:M...^[M...^.M...^"N...^*N...^UN...^^N...^xN...^.N...^.N...^.N...^.N...^.N...^.N...^.N..%^.O..&^.O..'^.O..)^ZO..*^xO..+^.O..,^.O..-^.O...^.O../^.O..0^HP..1^.P..2^.Q..3^"Q..4^OQ..5^^Q..8^rQ..9^.Q..:^.R..;^.R..<^.R..>^.R..?^`S..@^.S..A^.S..B^.S..C^.S..D^.U..E^.U..F^.V..G^KV..I^nV..K^wV..L^.V..M^.V..N^.V..O^.V..T^.W..U^:W..V^.W..W^.W..X^.W..Y^.X..Z^lX..[^.X..\^.X..]^(Y..b^.Y..c^.Y..d^.Y..e^.Y..f^.Y..g^.Y..h^.Z..i^.Z..j^.Z..k^&Z..l^)Z..o^GZ..p^qZ..q^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):139797
                                                                                                                                            Entropy (8bit):5.7397990834880295
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:J7f9ehB1p5o8mmIRMa8oc/1QatCDYezNFOOjAJ/V4KNsNYziU3YxnyL4:J7f92BL9Zh1QaSNF5AJ/V4NYziU3YZ7
                                                                                                                                            MD5:999ED3F4123A1479D43AB2DC9028EDE9
                                                                                                                                            SHA1:346A3C515D01929A4FE3B33C42A3AAD5FE731843
                                                                                                                                            SHA-256:4174B220824334D04BAD161309D342A647433FAE7C353432E34EAF49EC8787CB
                                                                                                                                            SHA-512:ABFB66F0826E88AD2E1C5850C14AD03A9DAF96239E1B675C7442659B9851F202F73B4BA98FF494719683E5C4EEA5CE8756533AF609218E83A47D61730F28E9A6
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.)G..y./G..z.>G..|.DG..}.VG....^G....cG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....3H....AH....PH....fH....}H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*.2I..+.5I..,.SI../.|I..0..I..1..I..2..I..3..I..4..I..5..J..6.CJ..7.\J..>.uJ..?.~J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].K...].L...]=L...].M...].M...].M...].M...^.N...^.N...^0N...^eN...^.N...^.O...^.O...^FO...^UO...^{O...^.O...^.O...^.O...^.O...^.O...^.P..%^.P..&^ P..'^-P..)^yP..*^.P..+^.P..,^.P..-^.P...^.P../^.Q..0^.Q..1^.Q..2^bR..3^.R..4^.R..5^.R..8^.R..9^VS..:^.T..;^.T..<^(T..>^`T..?^.T..@^.U..A^.U..B^.U..C^.U..D^.W..E^.X..F^?Y..G^xY..I^.Y..K^.Y..L^.Y..M^.Y..N^.Y..O^.Y..T^3Z..U^WZ..V^.Z..W^.Z..X^.Z..Y^.[..Z^e[..[^.[..\^.[..]^"\..b^.\..c^.\..d^.\..e^.\..f^.\..g^.\..h^.\..i^.]..j^.]..k^%]..l^(]..o^=]..p^e]..q^.]..r^.]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133496
                                                                                                                                            Entropy (8bit):5.415308981100393
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:Dw3h5p48XUV79Xcg7CHFD6XDcc4jHiWXBzOAJ/S0Y0q4qc6x0xGUsTQ5iM0mR:Dw3hY3V7egs5wDccaDXBaAJ/TMzM0w
                                                                                                                                            MD5:31556D02BA0EE812EBDA678E3B70B1F7
                                                                                                                                            SHA1:A2468245936DCE8B2944A66C7562EF4745F64FF7
                                                                                                                                            SHA-256:9D93FDB7F9D0D7833EBEF8EA7016F952301075E714A4918C6A3D5338FEC08FFE
                                                                                                                                            SHA-512:3B6EF3AD2D0115E9694A879E127ECF067D8DF03F0875EBED4427BC674C0C9CC0DEB591FEDA9DF120062C3A59D65FE952727B2A59F352A096887449A0745C8FE5
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.%G..y.+G..z.:G..|.@G..}.RG....ZG...._G....gG....oG....wG....~G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....&H....0H....BH....SH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.)I..+.,I..,.JI../.[I..0.dI..1..I..2..I..3..I..4..I..5..I..6.$J..7.8J..>.PJ..?.[J..N.pJ..g.|J..i..J..j..J..k..J..l..J...].J...].J...].J...]gK...]oK...].K...].K...].K...].K...].K...]UM...]mM...]uM...]{M...^.M...^.M...^.M...^.M...^LN...^rN...^yN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^9O...^=O...^SO..%^YO..&^hO..'^vO..)^.O..*^.O..+^.O..,^.O..-^.P...^'P../^VP..0^.P..1^4Q..2^.Q..3^.Q..4^.Q..5^.Q..8^.R..9^.R..:^.S..;^.S..<^.S..>^.S..?^ST..@^.T..A^.T..B^.T..C^.U..D^.V..E^]W..F^.X..G^ZX..I^.X..K^.X..L^.X..M^.X..N^.X..O^.X..T^.Y..U^CY..V^.Y..W^.Y..X^.Y..Y^.Y..Z^`Z..[^.Z..\^.[..]^<[..b^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^&\..j^'\..k^8\..l^;\..o^]\..p^.\..q^.\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133827
                                                                                                                                            Entropy (8bit):5.406788102503695
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:6m13PAqnyVM/oEqsQX3rdc0bvjIFQBAJXHdvxz2qKHiLXLLaH5619n:6muqnyVMUsQX3rKVFQBAJXbLnaH5619n
                                                                                                                                            MD5:B7456478AB25DA7A037689ECF9FC39B1
                                                                                                                                            SHA1:6CACB9E84AF6ADB490B92CAA6A24DEF7114266AD
                                                                                                                                            SHA-256:F07D58C568707C6DE882A19E260C9F97751BF750237FC0BF3556BA95995F5442
                                                                                                                                            SHA-512:9F71AC8F21C64E4B8C93ECDA70C47CC697395E0E67D8B4A8AB4D2C1F95F4D5644AEC87DF2E058526534BD4D65130D600443D3BAAF6AD32BCCE5BB994C506159B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H...."H....,H....@H....TH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*./I..+.2I..,.PI../.gI..0.rI..1..I..2..I..3..I..4..I..5..J..6.MJ..7.aJ..>.wJ..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].K...](L...]8L...]EM...]]M...]gM...]mM...^}M...^.M...^.M...^.M...^iN...^.N...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^,O...^cO...^qO...^.O..%^.O..&^.O..'^.O..)^.P..*^+P..+^;P..,^IP..-^SP...^vP../^.P..0^.Q..1^.Q..2^.R..3^.R..4^IR..5^WR..8^sR..9^.S..:^.S..;^.T..<^!T..>^bT..?^.T..@^DU..A^`U..B^xU..C^.U..D^.V..E^5W..F^.W..G^.W..I^%X..K^-X..L^9X..M^BX..N^QX..O^.X..T^.X..U^.Y..V^tY..W^.Y..X^.Y..Y^.Y..Z^OZ..[^.Z..\^.Z..]^)[..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^.\..j^.\..k^'\..l^*\..o^@\..p^p\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136702
                                                                                                                                            Entropy (8bit):5.445627159958296
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:WmIEoOqbh1lVpb6k3aveNmpoKyVwRHpDv2QnvAJ/KpsPlJtWCXh6YuvVBMPMs:AtVpGya2NGpr2iAJ/bPnXh6YuvfG5
                                                                                                                                            MD5:B665411D1B5570903F8E4C2501F977D5
                                                                                                                                            SHA1:CB8D98CF3E053C278F8B93D734FD2B1A42B6F322
                                                                                                                                            SHA-256:8DA674ABE460D1E2824A13338D29344BAE2F092FD94082D71EE91389F8822D69
                                                                                                                                            SHA-512:BDCB8E626DB816C1DB5C60489064D4BA4720381889A36E3D80D00E9988332EC6529107D9B3EF062B9BCC2AFDFE75EC55C8F08BA06D908B07D772D2547C7B4CF1
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........).j.zF..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..G..z..G..|..G..}.,G....4G....9G....AG....IG....QG....XG...._G....fG....gG....hG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....,H....GH....eH....lH....oH....pH....|H.....H.....H.....H.....H.....H.....H.....H.....H.....I..*.$I..+.'I..,.EI../._I..0.pI..1..I..2..I..3..I..4..I..5..I..6.5J..7.JJ..>.aJ..?.iJ..N.xJ..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...]mK...]tK...].K...].K...].K...].L...]"L...]eM...]zM...].M...].M...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^%O...^.O...^@O...^SO...^dO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^ P..*^AP..+^UP..,^kP..-^sP...^.P../^.P..0^/Q..1^.Q..2^.Q..3^.R..4^<R..5^LR..8^cR..9^.R..:^.S..;^.S..<^.S..>^.S..?^[T..@^.T..A^.T..B^.U..C^'U..D^.V..E^CW..F^.W..G^.X..K^6X..L^DX..M^LX..N^[X..O^.X..T^.X..U^.X..V^aY..W^|Y..X^.Y..Y^.Y..Z^.Z..[^\Z..\^.Z..]^.Z..b^`[..d^k[..e^p[..f^r[..g^.[..h^.[..i^.[..j^.[..k^.[..l^.[..o^.[..p^.\..q^(\..r^a\..s^y\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):213507
                                                                                                                                            Entropy (8bit):5.024482756621217
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:8EaX+/KuMHVOorn+T52wdOrsL489QgIv7RW9o3MfZyLv9Y+YDdVxPA:8EaX+/KuMHVOorn+T52wdOrsL489QgI9
                                                                                                                                            MD5:848ED63D29215F8B7D002F8D731DB13C
                                                                                                                                            SHA1:1A33D0ABFC5F4237E63440AB04A698AC4F230EC6
                                                                                                                                            SHA-256:CF4D6FA2C4A8F828FB11D464F504DDBBFF5ABAB9CC78CBA326BB8EAFCFCDF812
                                                                                                                                            SHA-512:2A1F75D2AAC4075DD43F816FA0B5D7949B1591E53BC711A69DD5540A3A6AD502648F7C6681DB7632B869553FF24EA43AB7CB4CE4B646C022FB88F0ACE97A3C7F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........J.j.8F..k.GF..l.RF..n.ZF..o._F..p.lF..q.rF..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....G.....G.....G.....G....$G....%G....&G....~G.....G.....G.....G.....G.....G.....G.....H...."H....4H....SH....vH.....H.....H.....H.....H.....H.....H.....H.....H.....I.... I....8I....BI....NI.....I.....I..*..I..+..I..,..J../.%J..0.6J..1..J..2..J..3..J..4..J..5.'K..6..K..7..K..>..K..?..K..N..L..g.'L..i.*L..j..L..k.7L..l.CL...]HL...].L...].L...].M...].M...].N...]:N...]^N...].N...].N...].R...].R...].S...].S...^-S...^?S...^iS...^.S...^.T...^.T...^.T...^.U...^OU...^.U...^.U...^.U...^.U...^.U...^\V...^yV...^.V..%^.V..&^.V..'^.V..)^OW..*^.W..+^.W..-^.W...^.W../^%X..0^.Y..1^.Y..2^.Z..3^.Z..4^.Z..5^.Z..8^D[..9^0\..:^p]..;^.]..<^.]..>^.]..?^.^..@^"`..A^/`..B^I`..C^.`..D^.d..E^.e..F^]g..G^.g..K^.g..L^.h..M^0h..N^Ih..O^.h..T^.i..U^Ui..V^.i..W^%j..X^Sj..Y^.j..Z^*k..[^.k..\^$l..]^ll..b^Am..d^Wm..e^am..f^gm..g^.m..h^.m..i^.m..j^.m..k^.n..l^!n..o^]n..p^.n..q^.n..r^,o..s^Ro..t^~o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):141995
                                                                                                                                            Entropy (8bit):5.773757591863307
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:5lfLiyHHuaQRmAJ/4ckM+zBHCYeQrGw5Pa:7TpHuaQR0Gh
                                                                                                                                            MD5:0B9599388DEC973FFEC68A5738A848F4
                                                                                                                                            SHA1:0A0AAF4F9618CF867A1BF1E5BC6B8B21B46C4870
                                                                                                                                            SHA-256:E7038A23BE62E4A476960B935A6C528AAEFB781B28FDB7E24B3D830B5C02F10E
                                                                                                                                            SHA-512:5EE7AEAAF1BE25DDC86694A16CA595872F2A9DCF1E48D0189D3A1EEF425629ABDC814FF32A8B288B468AB4F263953618C4363D033EF7AEC2BAE0072129DD1F9A
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v. G..w.-G..y.3G..z.BG..|.HG..}.ZG....bG....gG....oG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....$H....8H....FH....WH....gH....zH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*.1I..+.4I..,.RI../.cI..0.mI..1..I..2..I..3..I..4..I..5..I..6.6J..7.KJ..>.bJ..?.lJ..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].L...]EL...]UL...].N...].N...].N...]%N...^=N...^GN...^iN...^.N...^&O...^RO...^WO...^.O...^.O...^.O...^.O...^.O...^.O...^.P...^BP...^OP...^bP..%^jP..&^yP..'^.P..)^.P..*^.P..+^.Q..,^.Q..-^ Q...^7Q../^fQ..0^.Q..1^LR..2^.R..3^.R..4^.R..5^.S..8^%S..9^.S..:^pT..;^.T..<^.T..>^.T..?^OU..@^.U..A^.V..B^$V..C^EV..D^.X..E^.Y..F^.Y..G^>Z..I^_Z..K^gZ..L^vZ..M^.Z..N^.Z..O^.Z..T^"[..U^J[..V^.[..W^.[..X^.[..Y^.\..Z^h\..[^.\..\^.\..]^%]..b^.]..c^.]..d^.]..e^.]..f^.]..g^.]..h^.]..i^.^..j^.^..k^,^..l^/^..o^K^..p^.^..q^.^..r^.^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):135567
                                                                                                                                            Entropy (8bit):5.468430155460571
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:hHcfu74qyRw1uW3NTDPAJ/hIqTCO5i/fzXzZQqu:hHiuyq3FgIsi/fzXNQqu
                                                                                                                                            MD5:3BF6C4AA2129B4B535637AA6727FB1E9
                                                                                                                                            SHA1:569BCFAB7176BB9833A02B5853BBBEB3165538CC
                                                                                                                                            SHA-256:CBFF2DBB38D4D95FE7C811E0ABDB0B92AAD621E5C2C1EEDA3C394DCE5CF1D34F
                                                                                                                                            SHA-512:779CED23ADC89AF08F43531056B7195D253B7EA021439F73F0C9F9B49969153A2044E90ACC0BDA3C14D3B3E68F772F5CF8611F954B5B9CB0370D252A484CA36E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........!.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.$G..|.*G..}.<G....DG....IG....QG....YG....aG....hG....oG....vG....wG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....-H....BH....YH....`H....cH....dH....oH....wH....}H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.?I..0.II..1.zI..2..I..3..I..4..I..5..I..6..J..7..J..>.4J..?.>J..N.LJ..g.XJ..i.[J..j._J..k.fJ..l.nJ...]sJ...].J...].J...]cK...]iK...].K...].K...].K...].K...].K...].M...].M...].M...].N...^2N...^<N...^bN...^.N...^'O...^UO...^\O...^.O...^.O...^.O...^.O...^.O...^.O...^&P...^/P...^KP..%^QP..&^jP..'^xP..)^.P..*^.P..+^.P..,^.Q..-^.Q...^/Q../^SQ..0^.Q..1^/R..2^.R..3^.R..4^.R..5^.R..8^.R..9^gS..:^.T..;^.T..<^)T..>^\T..?^.T..@^.U..A^.U..B^.U..C^.U..D^.X..E^.Y..F^.Z..G^.Z..I^.Z..K^.Z..L^.[..M^.[..N^#[..O^C[..T^.[..U^.[..V^.\..W^.\..X^'\..Y^a\..Z^.\..[^.\..\^A]..]^a]..b^.]..c^.]..d^.]..e^.]..f^.]..g^.^..h^&^..i^8^..j^9^..k^K^..l^N^..o^n^..p^.^..q^.^..r^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):202805
                                                                                                                                            Entropy (8bit):4.966841321768272
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:+p95+Dq+4SjoFDq949M6oG3LFYJLajlw+f1SsSZXDn37skAJ/BBn0yh9KlQc+NAy:K95FOoDT9M6ea+sS1r37sTn59b0/k/ZN
                                                                                                                                            MD5:9F9570670D844A1B14B256A7584665E8
                                                                                                                                            SHA1:5B5CF46415662CC1CE4D93B876F4C45389AEDFC2
                                                                                                                                            SHA-256:ABCEE52DEB7382D84DE334C3228711A62A7D21D9A2CE506385805EEA0ED716F4
                                                                                                                                            SHA-512:D38FCA2D639E32F5EF90DFAAC04AEF0CCFBCC409619ACEC6535B5401502B7141F6EB24F574DB97A7ABC550B8E35E93CBC62A4A0F7494C56537FB670F19E02F8E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v.$G..w.1G..y.7G..z.FG..|.LG..}.^G....fG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....H....6H....[H.....H.....H.....H.....H.....H.....H.....H.....I....8I....VI....]I....`I....aI....kI....wI.....I.....I.....I.....I.....I.....I....1J....dJ..*.yJ..+.|J..,..J../..J..0..J..1.*K..2.AK..3.ZK..4..K..5..K..6.3L..7.[L..>..L..?..L..N..L..g..L..i..L..j..L..k..L..l..L...].L...]>M...].M...].N...].N...].N...].N...].O...]wO...].O...]7R...]sR...].R...].R...^.R...^.R...^.R...^MS...^PT...^.T...^.T...^.T...^.U...^oU...^.U...^.U...^.U...^.U...^QV...^aV...^.V..%^.V..&^.V..'^.V..)^_W..*^.W..+^.W..,^.W..-^.X...^7X../^{X..0^9Y..1^.Y..2^}Z..3^.Z..4^.Z..5^.Z..8^.[..9^.[..:^.\..;^.\..<^.]..>^v]..?^L^..@^]_..A^s_..B^._..C^._..D^.b..E^,d..F^.e..G^.f..I^<f..K^Hf..L^ef..M^uf..N^.f..O^.f..T^4g..U^.g..V^&h..W^Oh..X^th..Y^.h..Z^Li..[^.i..\^Jj..]^xj..b^Mk..c^[k..d^mk..e^wk..f^.k..g^.k..h^.k..i^.k..j^.k..k^.l..l^.l..o^Il..p^.l..q^.l
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):124359
                                                                                                                                            Entropy (8bit):5.508086107251322
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:UMEKocfz89KPmp1vWZtgKqrAuxHcShbWe2wAJ/0b1+rrx:UMJI9vpPbI
                                                                                                                                            MD5:C0EB9DC359EAD97302591D09A4D80C81
                                                                                                                                            SHA1:5569C326861E80DD05AA49A74D77815364915AF1
                                                                                                                                            SHA-256:B34E855F518A2041E4BBD7B5C269E35E7DFAA431FDD876FC0AAC38B887E65AFF
                                                                                                                                            SHA-512:B488831AA6219A246D0CDC370DC7B95FC07754702447964737EB53B9D5F64092E8873032BC40E8AF9270388BB1B655B4F06D6DE304B85B32FDD297959534D06D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........#.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z. G..|.&G..}.8G....@G....EG....MG....UG....]G....dG....kG....rG....sG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....1H....BH....IH....LH....MH....UH....]H....hH....nH....vH.....H.....H.....H.....H.....H..*..H..+..H..,..H../..I..0..I..1.HI..2.RI..3.]I..4..I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k.$J..l.)J...].J...]]J...].J...].K...].K...]@K...]PK...]bK...].K...].K...]uL...].L...].L...].L...^.L...^.L...^.L...^"M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^#N...^;N...^IN...^.N...^.N...^.N..%^.N..&^.N..'^.N..)^.O..*^0O..+^BO..,^NO..-^SO...^qO../^.O..0^.P..1^eP..2^.P..3^.P..4^.Q..5^)Q..8^CQ..9^.Q..:^lR..;^~R..<^.R..>^.R..?^2S..@^.S..A^.S..B^.S..C^.S..D^.T..E^&U..F^.U..G^.U..I^.V..K^.V..L^.V..M^$V..N^0V..O^WV..T^.V..U^.V..V^%W..W^;W..X^KW..Y^qW..Z^.W..[^.X..\^RX..]^yX..b^.X..c^.X..d^.Y..e^.Y..f^.Y..g^'Y..h^=Y..i^XY..j^YY..k^iY..l^lY..o^.Y..p^.Y..q^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):128671
                                                                                                                                            Entropy (8bit):5.3456626209237825
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:lg2BYLIYC9tUDiGypkjnfNPXIAJ/AtVPGuLeH+hJHw2L:lg2vtUDiGLfSwH+hJHw2L
                                                                                                                                            MD5:9CD6230B42F2F99D9580F7EF84508F9C
                                                                                                                                            SHA1:4F9D82E3C39F2B0D3B0CC32733254AAF38E811B2
                                                                                                                                            SHA-256:FE18B3E9E275D7330706DD19F4AF603A8AD899138374BFCBA8E2C6764F94C190
                                                                                                                                            SHA-512:46A07A61EE7A70B4D261C16D2FEF6F0E8A35CAF371E33E05CA1DC3BDC7F3D304C1DBDB34DDBA7B6BC573A6A58E170D9250CB1B6A4AD8AE6E255704416C022607
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........".j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z."G..|.(G..}.:G....BG....GG....OG....WG...._G....fG....mG....tG....uG....vG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....(H....;H....OH....eH....lH....oH....pH....wH....|H.....H.....H.....H.....H.....H.....H.....H.....H..*..I..+..I..,.+I../.KI..0.NI..1..I..2..I..3..I..4..I..5..I..6..J..7.,J..>.HJ..?.QJ..N.lJ..g.xJ..i.{J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].L...]*L...]LM...]_M...]cM...]qM...^.M...^.M...^.M...^.M...^aN...^.N...^.N...^.N...^.N...^.O...^.O...^#O...^FO...^UO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^-P..*^_P..+^pP..,^|P..-^.P...^.P../^.P..0^2Q..1^.Q..2^$R..3^;R..4^kR..5^zR..8^.R..9^5S..:^.S..;^.T..<^.T..>^QT..?^.T..@^$U..A^5U..B^HU..C^lU..D^zV..E^.W..F^gW..G^.W..I^.W..K^.W..L^.W..M^.W..N^.W..O^.X..T^cX..U^.X..V^.X..W^.Y..X^.Y..Y^IY..Z^.Y..[^.Y..\^>Z..]^aZ..b^.Z..d^.Z..e^.Z..f^.[..g^.[..h^/[..i^B[..j^C[..k^\[..l^_[..o^|[..p^.[..q^.[..r^.\..s^&\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):313562
                                                                                                                                            Entropy (8bit):4.239267478834166
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1536:SbAjkXB8AVWfEiKV2QwQw+z0vBRiE2k4ca6QVW640akLJse1oQXR2qtR+lAJ/R+i:SbAjkXBdVWDG0vCtRSAJ/v
                                                                                                                                            MD5:AFBB6F8A11ECB993E73A530E2682848C
                                                                                                                                            SHA1:950D0FA6CD4338084B5FFA72EB49F79B07830466
                                                                                                                                            SHA-256:3D16A99568173AD5760BF195B047C8850E39EC8D308A94F6C81CF7BA733F6F5F
                                                                                                                                            SHA-512:74EE545CDCE2E263BC33279325E0C72336575B36DE7DFE145897964CDE7EB57429CDFF082EC5A06E7F46F75E9BC6D5C4CC3DCA395745E990092CDAC27E56F129
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........<.j.TF..k.cF..l.nF..n.vF..o.{F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G....#G....+G....2G....9G....@G....AG....BG.....G.....H....8H....xH.....H.....H.....H.....H.....I....;I....{I.....I.....I....'J.....J....1J....2J....PJ....nJ.....J.....J.....J.....J.....J.... K.....K.....K..*..L..+..L..,.5L../.lL..0..L..1..M..2.JM..3.rM..4..M..5.QN..6..N..7.+O..>..O..?..O..N..O..g..O..i..O..j..O..k..O..l..P...].P...].P...].P...].R...].R...].R...]7S...].S...]ZT...].T...]9W...]mW...].W...].W...^.W...^.W...^SX...^.X...^.Z...^.Z...^.Z...^.Z...^.[...^c[...^u[...^.[...^.[...^.\...^.\...^.\...^.\..%^.\..&^1]..'^V]..)^$^..*^y^..+^.^..,^.^..-^._...^k_../^._..0^.a..1^.b..2^.c..3^.d..4^.d..5^.d..8^1e..9^.f..:^.h..;^.h..<^#i..>^.i..?^'k..@^)l..A^.l..B^.l..C^Lm..D^.o..E^.q..F^!r..G^!s..I^ws..K^.s..L^.s..M^.s..N^.t..O^qt..T^Eu..U^.u..V^.v..W^.v..X^Rw..Y^.w..Z^.y..[^.y..\^.z..]^,{..b^.|..c^.|..d^.}..e^.}..f^)}..g^i}..h^.}..i^.}..j^.}..k^.~..l^.~..o^.~..p^.~..q^<.
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):292506
                                                                                                                                            Entropy (8bit):4.456018055206471
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:XmgBEAYbTaJAuJLtobDpOr/gTipfJiUvqdWASw6Q7wdis5eRNwJLvM:XyAYbTaJAuJLtobDpOr/gTipfJiUvqdd
                                                                                                                                            MD5:5F441DE15CED6697594E8BC066297348
                                                                                                                                            SHA1:33C64379EC7297404E8AA4A4BA5A7155CD69DC90
                                                                                                                                            SHA-256:4AB6FBF03177BD7AD0908318D5AFFD0CAD142EC5E9ED560043E6B76E590BA995
                                                                                                                                            SHA-512:DAC2982DD5E9337FC3443A87D5DCBBFF46F0FEFDF9E163624BBA1ACD1528F543C84E2A088A83A749543E7B764607C16F1AB1C6C4F9504EFF48180A30681570F3
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........".j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z."G..|.(G..}.:G....BG....GG....OG....WG...._G....fG....mG....tG....uG....vG.....G....-H....aH.....H.....H.....H.....H.....I....<I....mI.....I.....I.....I.....J....!J....$J....&J....MJ....tJ.....J.....J.....J.....J.....K.....K.....K.....K..*. L..+.#L..,.AL../.xL..0..L..1.-M..2.PM..3.yM..4..M..5..N..6..N..7..N..>.#O..?.6O..N.sO..g..O..i..O..j..O..k..O..l..O...].O...]0P...].P...]=R...]XR...].R...].R...]/S...].S...].T...].U...].V...].V...](V...^oV...^.V...^.V...^KW...^.X...^.Y...^$Y...^.Y...^.Y...^6Z...^TZ...^.Z...^.Z...^.[...^.[...^.[...^!\..%^@\..&^|\..'^.\..)^s]..*^.]..+^.^..,^G^..-^e^...^.^../^._..0^.`..1^:a..2^cb..3^.b..4^.b..5^.c..8^mc..9^$e..:^%g..;^<g..<^.g..>^.h..?^fi..@^@j..A^|j..B^.j..C^.k..D^Qm..E^<n..F^.o..G^.o..I^Hp..K^jp..L^.p..M^.p..N^.p..O^Pq..T^'r..U^.r..V^.s..W^.s..X^?t..Y^.t..Z^.u..[^Gv..\^.w..]^gw..b^.x..c^.x..d^.x..e^.x..f^.x..g^Ly..h^.y..i^.y..j^.y..k^)z..l^,z..o^.z..p^.z..q^-{
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):246816
                                                                                                                                            Entropy (8bit):4.526207320870026
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:Oj8nCJFkcSCkIO+CSGHIqXqWmh+OqeZK8QyYo2w1p7GZuRM5aQxFvM4Obhi8ltOX:OAnsFkcSCkIO+CSGHIqXqWmh+OqeZK80
                                                                                                                                            MD5:F0A3CE8609D1CEA58D4D0DFC47D433F9
                                                                                                                                            SHA1:9F0497E31AC881960C2B9CE3F75FAC98D6EE300B
                                                                                                                                            SHA-256:31F31B2985C2AB430D373DD3D79821DB0674EDEE163B4AE74DC362051CCC1491
                                                                                                                                            SHA-512:0A722FE6373F0F64A844A8BD79CFF66707E158A908292DB8F5EE883E4732FC55864B06554988836A07039BEFC4020CB837883851DA0455F070BCB63DF390D919
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........b.j..F..k..F..l..F..o.%F..p.2F..q.8F..r.GF..s.XF..t.aF..v.vF..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F....GG....kG.....G.....G.....H....0H....4H....FH....^H.....H.....H.....H.....H.....I.....I.....I....5I....VI....hI....qI.....I.....I.....I.....I....BJ....wJ..*..J..+..J..,..J../..J..0..J..1.sK..2..K..3..K..4..K..5.>L..6..L..7..L..>."M..?.SM..N.kM..g.~M..i..M..j..M..k..M..l..M...].M...].N...]HN...]]O...]oO...].O...].O...]SP...].P...]cR...].R...].R...].R...^.S...^ S...^kS...^.S...^.T...^.U...^.U...^.U...^.U...^.U...^.U...^.V...^IV...^jV...^.V...^.W...^lW..%^~W..&^.W..'^.W..)^aX..*^.X..+^.X..,^.X..-^.Y...^DY../^.Y..0^.Z..1^.[..2^.\..3^.]..4^Y]..5^w]..8^.]..9^.^..:^.`..;^.`..<^.`..>^Qa..?^&b..@^.b..A^.c..B^:c..C^.c..D^.f..E^.f..F^.g..G^Ph..I^.h..K^.h..L^.h..M^.h..N^.h..O^<i..T^.i..U^.j..V^.k..W^-k..X^Kk..Y^.k..Z^Xl..[^.m..\^.m..]^.m..b^.o..d^,o..e^;o..f^Ao..g^qo..h^.o..i^.o..j^.o..k^.p..l^.p..o^Ap..p^pp..q^.p..r^.q..s^)q..t^tq
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):131303
                                                                                                                                            Entropy (8bit):5.614477997540201
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:h9Jxt4IyitGJmAMvUsPnnNtOLlh74OfkiO8ru0j19S4jiRRhdaMEi4AJ/Nwi1PLP:x4VJmAWvR0MEAwiBBlnH
                                                                                                                                            MD5:FE23B2095B245AE359C449CF3AE2D4C4
                                                                                                                                            SHA1:56AF0705886551389DEDB9BA1D9BECC682321977
                                                                                                                                            SHA-256:48B76D081B4398C7AF10BE207751EF3BF67720700C35B17196A4AA0C94526208
                                                                                                                                            SHA-512:94B81F5469620BB7545F3CCDA35845861E92FF7D29351A7F562AC861F718454D3D8DFF324CFC904E484F5551D952BC338F24E284F585A714FFFFF5F3A5445F64
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.'G..y.-G..z.<G..|.BG..}.TG....\G....aG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....H....(H....*H.....H....5H....?H....OH...._H....qH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....1I..*.7I..+.:I..,.XI../.oI..0.xI..1..I..2..I..3..I..4..I..5..J..6.<J..7.YJ..>.~J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].L...]OL...]VL...]KM...]dM...]kM...]qM...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.O...^.O...^)O...^1O...^<O...^VO...^gO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^=P..*^cP..+^rP..,^.P..-^.P...^.P../^.P..0^=Q..2^.Q..3^.Q..4^.Q..5^.Q..8^.R..9^.R..:^aS..;^rS..<^.S..>^.S..?^9T..@^.T..A^.T..B^.T..C^.T..D^ V..E^.V..F^.V..G^.W..I^MW..K^SW..L^dW..M^mW..N^{W..O^.W..T^.W..U^.X..V^rX..W^.X..X^.X..Y^.X..Z^DY..[^.Y..\^.Y..]^.Z..b^.Z..c^.Z..d^.Z..e^.Z..f^.Z..g^.Z..h^.Z..i^.Z..j^.Z..k^.Z..l^.[..o^#[..p^N[..q^k[..r^.[
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):216199
                                                                                                                                            Entropy (8bit):5.057813342706528
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:/J01cJI2B3IjHVzDFjqCKTASYagFczOAJ/ILNiXEMQOCqWiqrEb4UdsHh:iuJI2B3IjHB0TMWz2LNiXEoCqWiq5B
                                                                                                                                            MD5:6027526062E6F51A7C99FEEBC9AE1947
                                                                                                                                            SHA1:10D7346A8D6A4DADB48BF7720303EF39F76A564A
                                                                                                                                            SHA-256:5DDF9212CBC6696941547B2E57B02092517BFF6E70529F2EE14D0F593610E14F
                                                                                                                                            SHA-512:52178A648747F3247E32183CDB36ECC9A6314B2BEFA91CAE28D5110C479F5D1FF59AD2C802A75288C17650DE5A2EBCF369E04E760259015FF855FF8299DD9F3D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........%.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z..G..|."G..}.4G....<G....AG....IG....QG....YG....`G....gG....nG....oG....pG.....G.....G.....H....6H....xH....zH....~H.....H.....H.....H.....H.....I....'I....II....PI....SI....TI....dI....vI.....I.....I.....I.....I.....I.....I....,J....\J..*.mJ..+.pJ..,..J../..J..0..J..1.EK..2.^K..3.|K..4..K..5..K..6.<L..7._L..>..L..?..L..N..L..g..L..i..L..j..L..k..L..l..L...].L...]?M...]nM...].N...].N...].N...].O...];O...].O...].O...];S...]_S...]mS...]{S...^.S...^.S...^.S...^4T...^1U...^.U...^.U...^.U...^.U...^"V...^6V...^UV...^sV...^.V...^.V...^.W...^ W..%^0W..&^NW..'^kW..)^.W..*^9X..+^XX..,^yX..-^.X../^.X..0^]Y..1^.Z..2^.Z..3^.[..4^`[..5^.[..8^.[..9^.\..:^.]..;^.]..<^.^..>^s^..?^C_..@^.`..A^.`..B^.a..C^Ia..D^re..E^rg..F^.h..G^Ii..I^wi..K^.i..L^.i..M^.i..N^.i..O^"j..T^.j..U^.j..V^.k..W^.k..X^.k..Y^Hl..Z^.l..[^fm..\^.m..]^1n..b^(o..d^>o..e^Jo..f^Po..g^.o..h^.o..i^.o..j^.o..k^.o..l^.o..o^%p..p^np..q^.p..r^'q..s^Sq
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):155363
                                                                                                                                            Entropy (8bit):5.800734141236524
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:fIALmZzHiKMPnq2Piz+sjoO4294sK+UfclzQa1bwNgqoziL89KAJXSW8LTtdLpFd:6ZzHc0FosK+UfmbMYzig9SVX
                                                                                                                                            MD5:8D1DE53FF78406C42FE554ACC82B5983
                                                                                                                                            SHA1:1B80F071914C9A2F071355973DA7FF3D9508298B
                                                                                                                                            SHA-256:314FF8E069D132D43566143FFE0F5CEBC990A015AC32ED550AC687A4FF78D56F
                                                                                                                                            SHA-512:D027A534F8DDAC3C953D81BA635A8A3FE452E7295FB2AA7D8B9D5A718FFF7CD619323E3914DD6A17EACECB0C6D6F5129C9E793B2925F65DABEC83B9389DB295D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........2.j.hF..k.wF..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}..G...."G....'G..../G....7G....?G....FG....MG....TG....UG....VG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....H....%H....CH....SH....kH....rH....uH....vH.....H.....H.....H.....H.....H.....H.....H.....H.....I....#I..*..I..+.1I..,.OI../.kI..0.xI..1..I..2..I..3..I..4..I..5..I..6./J..7.LJ..>.wJ..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].L...]3L...]uL...].L...].M...].M...].M...].M...^.N...^!N...^ON...^.N...^2O...^rO...^zO...^.O...^.O...^.P...^.P...^$P...^FP...^VP...^.P...^.P...^.P..%^.P..&^.P..'^.Q..)^lQ..*^.Q..+^.Q..,^.Q..-^.Q...^.Q../^!R..0^.R..1^.S..2^.S..3^.S..4^.S..5^.T..8^!T..9^.T..:^.U..;^.U..<^.U..>^/V..?^.V..@^.W..A^.W..B^?W..C^aW..D^.X..E^-Y..F^.Y..G^.Y..I^.Z..K^.Z..L^&Z..M^9Z..N^CZ..O^mZ..T^.Z..U^.Z..V^h[..W^y[..X^.[..Y^.[..Z^E\..[^.\..\^.]..]^1]..b^.^..c^&^..d^/^..e^5^..f^9^..g^S^..h^~^..i^.^..j^.^..k^.^..l^.^..o^.^..p^._..q^#_..r^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):114748
                                                                                                                                            Entropy (8bit):6.7174096339004095
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:PyiDrZa1pqA5Rk109nKyeiTAArAJ/dIKqlES:6i81p7vnJcIll1
                                                                                                                                            MD5:B2E2087F9C688DC3EC45A55742BEDB6A
                                                                                                                                            SHA1:8EFD0726B46FC67CDA9FDC9989C707C23C7B031C
                                                                                                                                            SHA-256:2B255293F6C85ABB09162C825AEA120C3E695156EB952D26D1E5F505BA324B37
                                                                                                                                            SHA-512:2382B2B4D56831BD25D5A3535936D8A1039E00A287BD5AF05628C1A6FC54715FC8AD68AD3F207D6E073A588A66D5FA181E124125E7D1F00A5DE54ED658E5C33E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........b.j..F..k..F..l..F..m.&F..o.,F..p.1F..q.7F..r.FF..s.WF..t.`F..v.uF..w..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....G.... G....,G....>G....PG....RG....VG....\G....hG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....1H....EH..*.NH..+.QH..,.~H../..H..0..H..1..H..2..H..3..H..4..H..5..I..6.UI..7.jI..>..I..?..I..N..I..g..I..i..I..j..I..k..I..l..I...].I...].I...].J...]yJ...].J...].J...].J...].J...].J...].K...].K...].K...].K...^.K...^.K...^.L...^@L...^.L...^.L...^.L...^.L...^.M...^#M...^)M...^5M...^PM...^bM...^.M...^.M...^.M..%^.M..&^.M..'^.M..)^-N..*^\N..+^kN..,^wN..-^}N...^.N../^.N..0^-O..1^.O..2^9P..3^HP..4^kP..5^wP..8^.P..9^.Q..:^.Q..;^.Q..<^.Q..>^.R..?^tR..@^.R..A^.R..B^.S..C^.S..D^.S..E^^T..F^.T..G^.T..I^.U..K^.U..L^.U..M^.U..N^%U..O^[U..T^.U..U^.U..V^.V..W^EV..X^ZV..Y^.V..Z^.V..[^HW..\^.W..]^.W..b^bX..c^hX..d^nX..e^qX..f^tX..g^.X..h^.X..i^.X..j^.X..k^.X..l^.X..o^.X..p^!Y..q^;Y..r^.Y..s^.Y..t^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):114042
                                                                                                                                            Entropy (8bit):6.719449431220688
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:KzLhdmOXfT3Ud8iCAJ/U/N/9XiPI5hcWTS:o5f4/s/9y0TS
                                                                                                                                            MD5:32F600C44C8A26FDF518FAFFBCE56B71
                                                                                                                                            SHA1:7481922ABB60EE20F6FAFF9AE4DC4A55F6E6224E
                                                                                                                                            SHA-256:1710CEA2EB84E4FEED749E9E497D01E16B1B244D1A621D380226B8AE7CCE07C6
                                                                                                                                            SHA-512:DA145697AC8D7CE6E8CDF3F6E190C23F9791F4FDC2C1EED2DBC10E8C6377298C4D02DF464752277CD7EC429297860FFE50E7B9DE79632699DD2202B7324F55FE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........c.j..F..k..F..l. F..n.(F..o.-F..p.5F..q.;F..r.JF..s.[F..t.dF..v.yF..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....G....(G....4G....CG....RG....VG....ZG....`G....iG....uG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....;H....OH..*.XH..+.[H..,..H../..H..0..H..1..H..2..H..3..H..4..I..5.#I..6.aI..7.vI..>..I..?..I..N..I..g..I..i..I..j..I..k..I..l..I...].I...].I...].J...].J...].J...].J...].J...].J...]%K...]1K...].K...].L...].L...] L...^/L...^5L...^ML...^zL...^.L...^.M...^.M...^?M...^QM...^lM...^rM...^~M...^.M...^.M...^.M...^.M...^.N..%^.N..&^#N..'^/N..)^.N..*^.N..+^.N..,^.N..-^.N...^.N../^.O..0^.O..1^.O..2^vP..3^.P..4^.P..5^.P..8^.P..9^TQ..:^.Q..;^.R..<^ R..>^MR..?^.R..@^.S..A^(S..B^4S..C^LS..D^.T..E^.T..F^.T..G^.U..I^/U..K^5U..L^AU..M^GU..N^SU..O^.U..T^.U..U^.U..V^FV..W^eV..X^tV..Y^.V..Z^.V..[^FW..\^.W..]^.W..b^DX..c^JX..d^PX..e^SX..f^VX..g^nX..h^.X..i^.X..j^.X..k^.X..l^.X..o^.X..p^.Y..q^.Y..r^]Y..s^qY
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):5113713
                                                                                                                                            Entropy (8bit):7.996602002236813
                                                                                                                                            Encrypted:true
                                                                                                                                            SSDEEP:98304:O6z11Kt66I0L1Yk93pP3qPh1348CYCUrwr1ISgMRQK8nXCpGm5vEybt:rz7Kt66KG3ohB48hCUkrGsyCV5vXbt
                                                                                                                                            MD5:A1E5AAFE5A1509EF461D584C98484FF7
                                                                                                                                            SHA1:455A36FFF7A12989D0D1FC944A3C8840141D865A
                                                                                                                                            SHA-256:DD0CDD9201C5966DCC8B3AC3F587FDB05CAD09547E267E0D16B8B1A3CFF14772
                                                                                                                                            SHA-512:F98E33FE7E89A7798C6C274B4220C7C5262A2CEDD0C0A04C7821634679F71145ECA78C7A36A9F576712A00FFBABFABF58C958483D2D69FA9960178A7C3581946
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............f.....h..&.....&.....&.....*.....0.....0.....0.....0...0.0...0,9...0.;...07M...0nV...0.^...0.`...0Wg...0.i...0.l...0.l...0.n...0.o...0.p...0.u...0Yz...0.....0k....0.....0h....0.....0f....0.....0....0$....0d....0.....0.....0;....0.....0.....0J....0.....0Z....1z....1w....1.....1.....1F3..(7O6..-7.A...7.B../7.E..07sJ..17'T..27.U..37.W..47?l..57.q..67....77...87....97\...:7....;7....<7....=7....>7....?7....@7X...A7....B7Z...C7....D7....E7....F7....G7....H7....j7X...k7....l7....m7H...n7....o7....p7....q7....r7.,..s7.7..t7.d..u7vl..v7L...w7e...x7u...y7!...z7....{7....|7Y...}7...~7u....72....7.....7....7.....7.....7....7....7U....7e....7"....;d....;.....;.....;.....;G....;U....<O....<*....<.....<.....<.....<O....<.....<.....<.....<.....<(2...<.5...<.k...<yp...<.x...<M....<.....<.....<.....<.....<....<.....<.....<j....<.....<O....H.(...H.-...H.2...H.3...H.7...H.J...H.S...H.V...H_Y...Hma...H.f...H,l...H.v...H.|...H=....HR....H.....H.....H.....Hi....H.....H.....H0....H.....H..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):35557128
                                                                                                                                            Entropy (8bit):6.210627062782269
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:196608:3v86TOT8mACM4UfE9cCtP6s6AEDhz2U+RtIa8:EEOntMJE9cCtP6s6AEDhCR2h
                                                                                                                                            MD5:05E228EF13DA21E56C55E2772CE7110B
                                                                                                                                            SHA1:87D351581604D4638C1031ABE52118E207C1B86B
                                                                                                                                            SHA-256:6360D47E3903450C6647E0AE15423A70242E70E714114666FF58A105FE1F29D2
                                                                                                                                            SHA-512:8268F55BC6A421803E6597F9CA75711A9DB2F3DD11863E41606A5F698243F68CAE8F0B9073ABD8447366ADCF5853F89E82F26114F79ABDDA43F4C75EB90171EE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:....8...4.......{"files":{"icon.ico":{"size":270398,"integrity":{"algorithm":"SHA256","hash":"85db7f849c7a0a41bb581446f773437ef2175b2952ed9224f00c6abbc9543c0f","blockSize":4194304,"blocks":["85db7f849c7a0a41bb581446f773437ef2175b2952ed9224f00c6abbc9543c0f"]},"offset":"0"},"package.json":{"size":1372,"integrity":{"algorithm":"SHA256","hash":"85cce53211667127ebd8aa37ac383a0cf0d1b4fe918509a6df5d0a2c91afa116","blockSize":4194304,"blocks":["85cce53211667127ebd8aa37ac383a0cf0d1b4fe918509a6df5d0a2c91afa116"]},"offset":"270398"},"src.rar":{"size":1390923,"integrity":{"algorithm":"SHA256","hash":"fd786f9c88d4b6534e2e263ebbd27101a3df5f6e579b02b2e98652c1fb1a6998","blockSize":4194304,"blocks":["fd786f9c88d4b6534e2e263ebbd27101a3df5f6e579b02b2e98652c1fb1a6998"]},"offset":"271770"},"src":{"files":{"alien.png":{"size":184182,"integrity":{"algorithm":"SHA256","hash":"61d672610d6b7e83fe83142c2f90b355343f8c9b14ba76efb829d855d0df33c9","blockSize":4194304,"blocks":["61d672610d6b7e83fe83142c2f90b355343f8c9
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):405456
                                                                                                                                            Entropy (8bit):3.3151721500305027
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3072:tIEEOj4QYKlDP86x7WKvS1Oee66XIcKycPfia8mFZ1U2Kzm7pCs0XxYTZtaNI/2B:ScYg+1OktFo
                                                                                                                                            MD5:F14A9115EDBCC4697515DB49CDAF5B08
                                                                                                                                            SHA1:9C43D69BA11A03278885DC7F285584278DE9CA11
                                                                                                                                            SHA-256:F25DDF52F68DE295BF1CDBD4F7FC6AA9D8F882A16A2F97B4E08E322B6B90546E
                                                                                                                                            SHA-512:3C646B258A2BA7CD3E1D878D3009D181302D790F324C4C2B10A9EEEBBEAB9C49AB43B15B3154AE99749410DEBB2F3AD8D121979EC11E44AD074E1F675CF05DC0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........#..<10.0.139.17-electron.0..........................................h....n......M.......a........a........a........at.......a........a.......... ....9.`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ....`....D..W.....W.....W...D. ..).`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D.(Jb....!.....@..F^.....U`....`.....(Jb....B.....@..F^...`.....D...IDa........D`....D`....D`.......`.....D].......D`.......VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa............L`.....HD...%.D...L.....................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):726296
                                                                                                                                            Entropy (8bit):4.668258384826135
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:AHQ4qoB5QYJu1I3DNuIb4GTRdrLtg8HYpzieXivvbwuJeby:f1DIHcBqazjyv3JCy
                                                                                                                                            MD5:DD0D4997DFAB65B96AAD66D035F6029C
                                                                                                                                            SHA1:65FAA1DBB7CCD902F1F1AF544F6941234FF679D3
                                                                                                                                            SHA-256:F033FB86FA92DF1BE464DE590AA312CC016BC5D6BEA26672C896BF4D3F1261CD
                                                                                                                                            SHA-512:86B06BD0F91F50BD13B3AF179F3F498F10A225D25BA5CA32258F75567E601C3F48F7A3FB436C3B0D2BA53CC9EAAA8F74C95B44458628B0EA716563694A3C7002
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.........lrz10.0.139.17-electron.0..........................................x....v...C......P...M.......a........a........aR.......at.......a........a.......... ....9.`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ....`....D..W.....W.....W...D. ..).`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D.(Jb....!.....@..F^.....U`....`.....(Jb....B.....@..F^...`.....D...IDa........D`....D`....D`.......`.....D].......D`.......VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa............L`.....HD...%.D...L.............................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):4654592
                                                                                                                                            Entropy (8bit):6.2751649857298615
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:49152:IF1AR5iHc7pcVZmoUAw2OtlWBLl0xmqOPAbbtCtZTK6pqFqP5z+PF/XL+j4aCyAj:BdVxA85dOj4/R
                                                                                                                                            MD5:6B40CE4AF617399536D0EA6EDC84BAAD
                                                                                                                                            SHA1:55C91309FE49AF121DD3DE9C24F60B8CFEA680F1
                                                                                                                                            SHA-256:C64B87D7CEBDAEE8B779859059A6C63FB47C8102A4F7311D678895F87B825C59
                                                                                                                                            SHA-512:9C4CADDB2F6BA7D17683D662A1D9ECD2EFCDF1FC081E0127260F0266EDA78B42C684BCAD5BCCBDC03A06619B9AE4960CCEA67472D7650C53E67A5A70BE6E36C6
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....":......... .2.......................................H...........`A........................................xeD.....o.D.P.....H.......F..1............H.Pi...6D......................5D.(....S:.0.............D.H............................text....!:......":................. ..`.rdata..L....@:......&:.............@..@.data....,...`E..&...8E.............@....pdata...1....F..2...^E.............@..@.00cfg..(.....G.......F.............@..@.tls....A.....G.......F.............@..._RDATA........G.......F.............@..@.rsrc.........H.......F.............@..@.reloc..Pi....H..j....F.............@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):106
                                                                                                                                            Entropy (8bit):4.724752649036734
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3:YD96WyV18tzsmyXLVi1rTVWSCwW2TJHzeZ18rY:Y8WyV18tAZLVmCwXFiZ18rY
                                                                                                                                            MD5:8642DD3A87E2DE6E991FAE08458E302B
                                                                                                                                            SHA1:9C06735C31CEC00600FD763A92F8112D085BD12A
                                                                                                                                            SHA-256:32D83FF113FEF532A9F97E0D2831F8656628AB1C99E9060F0332B1532839AFD9
                                                                                                                                            SHA-512:F5D37D1B45B006161E4CEFEEBBA1E33AF879A3A51D16EE3FF8C3968C0C36BBAFAE379BF9124C13310B77774C9CBB4FA53114E83F5B48B5314132736E5BB4496F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"file_format_version": "1.0.0", "ICD": {"library_path": ".\\vk_swiftshader.dll", "api_version": "1.0.5"}}
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):850432
                                                                                                                                            Entropy (8bit):6.547858375062584
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:12288:t19hqUpfVn/HBSu5Eg14Jegb6m3vKzE/6oFXKQoEp7:X9hqCx5EgG6mSzNU+Ep
                                                                                                                                            MD5:4783D34314EF4FEB241F4FDF36499521
                                                                                                                                            SHA1:89296D6AC36CD005045DB7307BF31005D0CF29A7
                                                                                                                                            SHA-256:6E8BEB4E9DA77313F40E75C4FFAEEAA522B6F054FD792631EC1EFCF8248CA63B
                                                                                                                                            SHA-512:7EF1B0E89590B4AF20F182BED9D82D5175D1C8C675FC3D05DC0EB2F834052124C877135FC68B2988683CF35E8B25870E45F7C126349D28125C021C8EEB4998AC
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." ......... .......n....................................................`A........................................X...@!......P....p..........|e.............................................(.......0............................................text...v........................... ..`.rdata.............................@..@.data....M....... ...\..............@....pdata..|e.......f...|..............@..@.00cfg..(....@......................@..@.tls.........P......................@..._RDATA.......`......................@..@.rsrc........p......................@..@.reloc..............................@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:PE32+ executable (DLL) (GUI) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):598016
                                                                                                                                            Entropy (8bit):5.679946920993194
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6144:+xjCNl/FMzNwaU61V2eWstmrnkfphvG+BM4PME:+xCNl/qNnZ1V2eWsGGphvb
                                                                                                                                            MD5:AF4C5AFABFE3A88BF915791DB1FCA9D8
                                                                                                                                            SHA1:F70E537DB7D7883336D2BC03EC2BEF02D05727F8
                                                                                                                                            SHA-256:FA027EB0DEA178A2FC7D32BB2C4B6BBD638508796CED7FEED80E8191171C5BF8
                                                                                                                                            SHA-512:2B8A23920CB5D9347DEAD35E074CF1E31027163037342D63C6B6C0E047735B80DAD3DAA65800E891DF48412AC16189B8F1D2A3572CC05BA7D8EE354774D97CAF
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......@.....B..B..B...C..B...C..B...C..Bb.gB..BV..C..BV..C..BV..C .B...C..B..B..B...C..B...C..B..eB..B...C..BRich..B........PE..d...a&8d.........." .........8............................................................`.........................................@...n... 4..<.......<.......$K..................h...8...............................8............0.. ....P..@....................text............................... ..`.rdata...o... ...p..................@..@.data....3...........x..............@....pdata...S.......T..................@..@.idata.......0......................@..@.didat.......P......................@....00cfg..Q....`......................@..@_RDATA.."....p......................@..@.rsrc...<...........................@..@.reloc..............................@..B........................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:PE32+ executable (DLL) (GUI) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2745856
                                                                                                                                            Entropy (8bit):5.933546564676984
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:24576:UVP1YhemMGeD/VZf9hxD7hPr9F1WxTfJqLTgAU5zXu+FVDqZ3Pi9ewOeVklKJw6:UVP1HC6/VZ17hj9uJYXgLQ+FxZPOll
                                                                                                                                            MD5:10549F42263E31E1A335CDF5824BE847
                                                                                                                                            SHA1:B4E736AADC5F66D7A67255C719773721D55B3D52
                                                                                                                                            SHA-256:487CEC14EEA6646BE0266A5767B53ED67B49B429036521EE13D0656365FCCA20
                                                                                                                                            SHA-512:018ED34EDFD60DE37A73191206ACE75521A6AC9C588AC6A05DCCC576F41CB5233C3C800E14C303D5F0D7BCD707F556D24151FE86C4B163C09B2F3CC5AAC930CF
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$...........[.l.[.l.[.l...o.O.l...i..l...h.{.l...h.U.l...o.R.l...h.Z.l...i.r.l...m.X.l.[.m...l...i.Y.l...l.Z.l....Z.l...n.Z.l.Rich[.l.................PE..d....m.b.........." .....n"..................................................`*...........`...........................................'.......).(.....*.<....P(../........... *.x....@%.8...........................`?%.8.............).......).@....................text....m"......n"................. ..`.rdata..N.....".. ...r".............@..@.data.........'.......'.............@....pdata...O...P(..P....(.............@..@.idata........)......h).............@..@.didat..d!....).."....).............@....00cfg..Q.....).......).............@..@_RDATA..".....*.......).............@..@.rsrc...<.....*.......).............@..@.reloc...6... *..8....).............@..B................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:SQLite 3.x database, last written using SQLite version 3035005, file counter 7, database pages 5, cookie 0x4, schema 4, UTF-8, version-valid-for 7
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):20480
                                                                                                                                            Entropy (8bit):2.3172897780113213
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:96:oNwCz2C+NR73QOaq9kozeav2RT3VnnnekEEN9ORelnasL:ouZC+NJLaqe0LUTpnn1DN9OROnj
                                                                                                                                            MD5:D5ECE7413F423743B368D55921D78C0A
                                                                                                                                            SHA1:3F1E854E373FB2F9BFD868AF38AF5C6B3CD2A71D
                                                                                                                                            SHA-256:D38D8A693CD4B718EA9E4995939262749893878EE9A0931BEB0F33781979FD77
                                                                                                                                            SHA-512:F54CAB99D2795DF2D01E54D1E1184D116A56E8053140BAF868ADBFC7EE35EFBC59F83E3FF26C84E0D6D1A118BB79CAB82527F1502D328483953A0A58BEED8E0B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:SQLite format 3......@ ..........................................................................O}.........g.....8....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:SQLite 3.x database, last written using SQLite version 3035005, page size 2048, file counter 2, database pages 24, cookie 0xe, schema 4, UTF-8, version-valid-for 2
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):49152
                                                                                                                                            Entropy (8bit):0.8182303930711242
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:96:+RMKLyeymwxCn8MZyFltK3PlGNxot83n:+RkxGO8PlGNxz
                                                                                                                                            MD5:A93B35941137916187814E3E7C88C93D
                                                                                                                                            SHA1:3834E7B2A614BD688831CFC47786729F6CAC0121
                                                                                                                                            SHA-256:0D1DC0E9F4C9BE281E17D24AC969E0FF3F8388114420417126A4F502EABC3107
                                                                                                                                            SHA-512:84A749B77BBED02944C9B25D1B98C638B3DBB906A2A222FF9FB229C7AC0C8A64D123D1CB47A1E9A88FB9E67BAD0928FE1C952152F30311EFC6C8B9330B9441B4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:SQLite format 3......@ ..........................................................................O}....................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:SQLite 3.x database, last written using SQLite version 3035005, page size 2048, file counter 5, database pages 59, cookie 0x4f, schema 4, UTF-8, version-valid-for 5
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):122880
                                                                                                                                            Entropy (8bit):1.1305327154874678
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:192:oLt4nKTjebGAUJp/XH9euJDvphC+KRmquPWSTVumQ6:it4nsJp/39RDhw+KRmqu+cVumQ
                                                                                                                                            MD5:D331C900DDE8ACB523C51D9448205C0A
                                                                                                                                            SHA1:BDB3366F54876E78F76A6244EDA7A4C302FEB91D
                                                                                                                                            SHA-256:F199798DF1C37E3A8F6FFF1E208F083CF687F5C6A220DCAD42BB68F2120181CD
                                                                                                                                            SHA-512:415E4F4F26D4F861063676EA786C2941DB8DB7E248E32D84595BC7D531CE19669AFDCB447BC18B0B723839984CD15269FF6E89EBCD168D8EBD0EC7AF86CC92E7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:SQLite format 3......@ .......;...........O......................................................O}...........5........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:gzip compressed data, from FAT filesystem (MS-DOS, OS/2, NT), original size modulo 2^32 89501
                                                                                                                                            Category:modified
                                                                                                                                            Size (bytes):49840
                                                                                                                                            Entropy (8bit):7.98921472388738
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:768:mAGie645U3t8HCI8NvN9o2tafnQQ13XidTgnPBRkM57Jcsf+uGLDjTtIxJ:/tt4mOEvN+PkOuMxWsIDjBIxJ
                                                                                                                                            MD5:7A995582ADCF503792EE678DF48362DE
                                                                                                                                            SHA1:D8C376A7703C89A1AD568F2D544AA68E75768456
                                                                                                                                            SHA-256:2B40FD3115A236B45371D134D65C3D38AA2FDA05CBC3CDC2380477029F91B34E
                                                                                                                                            SHA-512:687CBC804E2AFACDC0A9F3884097D757E8CE77B9BB8B600E187E3BD0FD581E874DEF26FAB0CDCB5B097031861800A911631039188B165FD0C53B2CEEDC15D2F1
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:...........}.v...`}J.bg$.t..W....HJ"%...E'...9.;...e...\........-ef..ZT.....o......U.V...U......G..?......?=..W....?...^.?....S.......V.T.-~.N.^.....W.._.o.(.... ..F.y$....O1._..o....3..gr-?....s|U....T....^..s........T..K......x..:......{...G..f.O`....{1.b.r.am..?............:q>..|......?............OpN?..?.wn.w.G..opn...r.G.@.....jT......xr .....F....Q......S....>....G.!w.W..?5..o......Wb.r...y.....G.j....x.Sk.......;....W.[_....T.......=@....d.5..j....?r..[S..uy..........Np.3.c...P....{..N....9......?....D..._..>... .X.B~.K......~...38...N...).T........#.y..F...)6.l..O......}.....v%.I.9l....x.}>..f..|.P.....e.*.....!.9.7...3L4......}...o.{....$-...}.O..5..`d...g.[x.O..X.<....X.f........~y.3...._....y...I.....ufc..@.J@./`...`,>G.9...b...3....<.X.a..F.....8.S.0#..'n...p.Y.....5`..7..g..G..:.o........KX...........6....:HS........crN...=.z..np..S}..>./....i_CP.........m....O.W0......V.Y....$.N....,..V......>s0Q./..k....~...y.j.x...9
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:SQLite 3.x database, user version 12, last written using SQLite version 3036000, page size 32768, writer version 2, read version 2, file counter 3, database pages 3, cookie 0x1, schema 4, UTF-8, version-valid-for 3
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):98304
                                                                                                                                            Entropy (8bit):0.08231524779339361
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:12:DQANJfWk73Fmdmc/OPVJXfPNn43etRRfYR5O8atLqxeYaNcDakMG/lO:DQANJff32mNVpP965Ra8KN0MG/lO
                                                                                                                                            MD5:886A5F9308577FDF19279AA582D0024D
                                                                                                                                            SHA1:CDCCC11837CDDB657EB0EF6A01202451ECDF4992
                                                                                                                                            SHA-256:BA7EB45B7E9B6990BC63BE63836B74FA2CCB64DCD0C199056B6AE37B1AE735F2
                                                                                                                                            SHA-512:FF0692E52368708B36C161A4BFA91EE01CCA1B86F66666F7FC4979C6792D598FF7720A9FAF258F61439DAD61DB55C50D992E99769B1E4D321EC5B98230684BC5
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:SQLite format 3......@ ..........................................................................S`.....}..}...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):32768
                                                                                                                                            Entropy (8bit):0.017262956703125623
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3:G8lQs2TSlElQs2TtPRp//:G0QjSaQjrpX
                                                                                                                                            MD5:B7C14EC6110FA820CA6B65F5AEC85911
                                                                                                                                            SHA1:608EEB7488042453C9CA40F7E1398FC1A270F3F4
                                                                                                                                            SHA-256:FD4C9FDA9CD3F9AE7C962B0DDF37232294D55580E1AA165AA06129B8549389EB
                                                                                                                                            SHA-512:D8D75760F29B1E27AC9430BC4F4FFCEC39F1590BE5AEF2BFB5A535850302E067C288EF59CF3B2C5751009A22A6957733F9F80FA18F2B0D33D90C068A3F08F3B0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..-.....................................8...5.....-.....................................8...5...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:Zip archive data, at least v1.0 to extract, compression method=deflate
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):10270
                                                                                                                                            Entropy (8bit):7.914396345957595
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:192:+aEWKdGfh+d+qegt1wTIEer8Hj9QOhxU1PjAWRewMgbDDAik4xS0dck:+aEWKM59qJbwcEq8+9RewnbHA8tdck
                                                                                                                                            MD5:8696B89522BE87BB40D64C0FB2B3FDC1
                                                                                                                                            SHA1:8D8CA37B59AB17340632F0DAF07F0B4D72744B04
                                                                                                                                            SHA-256:6F3B39A6159AFEB876AF29DA3609D49253B83A6EF2C60AC09A44DD1C7A963D11
                                                                                                                                            SHA-512:C0D7417AEF3BD55A254372A3D8F69A577A9EE48A3A4A64B80F64071AF2D9FB740E37FF64F979C7DD1A14215BECDB2EBDE40DC6ED4F03720FFD554874EF8A6676
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:PK........Bz.VX.Uv....H.......Autofill Data.txt.....0...{."..X.B.C.".tA[O...........J.^E...m......I...C.%.z.(..E... ..V.T...`.QN.R....TR.!....r.rM ..7>.8...M7 ..Y0.......(o.Zg.6........f.^..^<.~&...]..e&..6.zN..?.<.2%..k..E..PK........Bz.V................Cookies/PK........Bz.V.&.^...w:......Cookies/Chrome_Default.txt.{k..8..g.W..nW...|WE.._.`......B.b...`..S...Y....gf7bc3.,KGG..s.#.'y.....\.....\.AU.(V..~..RA...(<..8*.(.~..U..o..=U...i..w...j.tc1.z.fE..)..U4..ku.2.Dc..(..,O3,78Dh0......$...,........Bb....x..!..HA.a-.4..GS.....u.C.q..nZ.@MS.n..ENx...<../.............Q..d .R...w...O...Ov..vN...Y..$..<..S...h.......n......g~.......:..mE..!..=.. A...u.\..2D..g...)'f.....\....\..._..:..,.|.FB....1,.\.......$E...H..0`9.Ky..A...+`..Og.........n...U....4..Ly...?. /.+un.v...a...ER... Hb)S. ......8lO..H.g..9..E.W.pu)%..W.|.~Km.er.V....E...@=.&..'s.....s...3/,W^.J/.V.8.%"M.ES..S....mjUdh.t"U.nOQ...YV.__..>5-5,..@...>(.`....8e.}8.S...C.M....V..2.M..qx
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):1096
                                                                                                                                            Entropy (8bit):2.5189543192378183
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:6:W2OCN23iKKdKQlETJVfPf1LxrVAfb1O1L1fK1L3c1US81LOkMbqW2OCN23oH+Tce:85KkQl0f1NrVAhO1Y1X10e8YebQlO
                                                                                                                                            MD5:665BE975DC21FFFF14A3523461BA334A
                                                                                                                                            SHA1:41F64B6410C418B663EB398EB549D41B3BCC27D3
                                                                                                                                            SHA-256:695F51ADAA9EFDC5C846740212611AAF51E636BAB393E314930904B41A2A6A69
                                                                                                                                            SHA-512:030397C4436749B5C8C54562F86D48B597016E38A2AF04A6375A95B1B8886E5F6965B8392C99F69CA2C11DBEE01DCEBB50875DD250D7915922564B814A3F01AB
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.AUTOFILL DATA FROM C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\ #EPSILON..===========================================================================.Name: PinText1.Value: r4cmq.===========================================================================..===========================================================================.Name: PinText2.Value: t76tc.===========================================================================..===========================================================================.Name: PinText3.Value: ymw2y.===========================================================================..===========================================================================.Name: PinText4.Value: yhgxj.===========================================================================..===========================================================================.Name: PinText5.Value: 7fvrz.===========================================================================..
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text, with very long lines (702)
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):14967
                                                                                                                                            Entropy (8bit):5.954239337708047
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:192:B8glk1oVTd4ssTBekoByoB/jEaqyfmBoOkCCxkA1nLvpwH6HFrA9vhMD7:ugyKqbBekXwAaqymoOkVxkgnjFs95Mv
                                                                                                                                            MD5:0BA725C64E1C9F23BF8BCCCD8817D024
                                                                                                                                            SHA1:05BEEE5C210F5AE611C436824C34F89348148116
                                                                                                                                            SHA-256:BC0A418DAEB44A2CFF9DE8780E8D29E6F87C18B1FC0AAEE5158862E346B63B95
                                                                                                                                            SHA-512:C3AC176262D3759314E3F3A79660E0BD25F2DA1BBF53D4804CB8ABD4687AAAE409ED8D810A3875EB5E72269A357AE774AA59FFC55B3D104989469735EFF634D2
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.COOKIES FROM C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\ #EPSILON...mozilla.org.TRUE./.FALSE.2597573456._ga.GA1.2.1600984353.1629284902..mozilla.org.TRUE./.FALSE.2597573456._gid.GA1.2.1917303933.1629284902..mozilla.org.TRUE./.FALSE.2597573456._gat_UA-36116321-1.1.www.mozilla.org.TRUE./.FALSE.2597573456.moz-stub-attribution-code.c291cmNlPXd3dy5nb29nbGUuY29tJm1lZGl1bT1yZWZlcnJhbCZjYW1wYWlnbj0obm90IHNldCkmY29udGVudD0obm90IHNldCkmZXhwZXJpbWVudD0obm90IHNldCkmdmFyaWF0aW9uPShub3Qgc2V0KSZ1YT1jaHJvbWUmdmlzaXRfaWQ9MTYwMDk4NDM1My4xNjI5Mjg0OTAy.www.mozilla.org.TRUE./.FALSE.2597573456.moz-stub-attribution-sig.50ad43a8fbb91d1a455ab867aac80170225861094e9e569bb9ce2c97b18b8345..mozilla.org.TRUE./.FALSE.2597573456._gali.download-button-primary..google.com.TRUE./.FALSE.2597573456.CONSENT.YES+srp.gws-20210811-0-RC2.en+FX+979..google.co.uk.TRUE./.FALSE.2597573456.CONSENT.YES+srp.gws-20210811-0-RC2.en+FX+874..google.co.uk.TRUE./.FALSE.2597573456.NID.221=2LbIBl-Wy6ps2Ch6BzX2V9QP6iXFgR2V
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text, with very long lines (1141)
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2230
                                                                                                                                            Entropy (8bit):5.991978676874266
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:48:3Db3LtLPElYYxZhQBlSPAF+a4WP+OS6qFXjIqN5CPvrhFbnP:zD5tT06qFXMqN5CXtlP
                                                                                                                                            MD5:133C3E82637110981293CB4D8699D0A3
                                                                                                                                            SHA1:F82620BD6E3A889CDC54B7D319FDFDCA21D74A0D
                                                                                                                                            SHA-256:C6E7F39632E54EC76A192B66FA524A3BF3AA85550B0BD1E700AFAD2B0E4E3BCB
                                                                                                                                            SHA-512:745B5EF701CC2B28AD9E101EA440D7A15AE6E0CD24105F1B41CB4A15E74F68E3478CD644C729E61F0FC68207480EFA964348C3453E41F33864F31B85433B5513
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.COOKIES FROM C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\ #EPSILON...bing.com.TRUE./.FALSE.2597573456.ANON.A=DF41427C7DA84D8710087B5EFFFFFFFF..bing.com.TRUE./.FALSE.2597573456.MUID.2C9020CFDC0C6EC30C1E3075DD746F75.www.bing.com.TRUE./.FALSE.2597573456.MUIDB.2C9020CFDC0C6EC30C1E3075DD746F75..bing.com.TRUE./.FALSE.2597573456.SRCHD.AF=NOFORM..bing.com.TRUE./.FALSE.2597573456.SRCHHPGUSR.SRCHLANG=en..bing.com.TRUE./.FALSE.2597573456.SRCHUID.V=2&GUID=E9378D0EA44343AD9A528F9F0BD732E0&dmnchg=1..bing.com.TRUE./.FALSE.2597573456.SRCHUSR.DOB=20210922..bing.com.TRUE./.FALSE.2597573456.WLS.C=8628dc546dc99469&N=Shahak..bing.com.TRUE./.FALSE.2597573456._EDGE_S.F=1&SID=10B496803F94694E168F863A3EEC68A7..bing.com.TRUE./.FALSE.2597573456._EDGE_V.1..bing.com.TRUE./.FALSE.2597573456._SS.SID=10B496803F94694E168F863A3EEC68A7..bing.com.TRUE./.FALSE.2597573456._U.1-nw2LNB8q54JqYkW5Tmw94Gp6FMnUA7FXA71cH9zKXA_Q1y7l7sPcEO0sEdGd9CZ63JJPP7lvSb90Wh6inF679cSiosElCAivn72jaZ1EZ1M370xGzY-b3k8_hvtH3o
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):108
                                                                                                                                            Entropy (8bit):5.049600554483611
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3:NSqoF5OONtkEaKC50HE9jnIMwUyNQf3lP1LEr3:EF5OCNaZ50HE9bsQx1LEr
                                                                                                                                            MD5:56D01D43A9A2605083EAE922BA40E20E
                                                                                                                                            SHA1:3D95268AE08CFA8A1CC6517E97C61E05DA3BFF32
                                                                                                                                            SHA-256:DDEB5E0461FFB8105625C15A563E4E9D0989CFAB3B1BFE9FF8745CBB9BF4E463
                                                                                                                                            SHA-512:6B0618C2F27898F979DD611A5918398A9624459C6836F5480EE06467FA76E468D9960E7B8ABE6B21F46E30A9CE00F7ED49ABC52FDC26F81ABD94F456276FBA32
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.COOKIES FROM C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\ol7uiqa8.default-release #EPSILON..
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):191
                                                                                                                                            Entropy (8bit):4.854335816490327
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3:mjjF5OONtkE2J5iKKKc64E/YP9ErO3hjjF5OONtkE2J5oH+fg0cwr4E/YP9Er3:UjF5OCN23iKKdKQlEU1jF5OCN23oH+TT
                                                                                                                                            MD5:144D61BFEFDFEA61BA58B46C550FF5AC
                                                                                                                                            SHA1:3EE1EB6EC8604C9F5EAA5FD4BE9BCDBC407FAB57
                                                                                                                                            SHA-256:712166940B35654A1EDF40396E6C66D41BA804B6E692AF11F444FD1D56C225A9
                                                                                                                                            SHA-512:8617AF1398C0EB74558565461E0E4C42922CAFF466D1B8925515FBE65AAC7F83A200F63140CDF8985CDC3824457AD038EAA3D4510CCA05759EAAB69681C81F12
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.CREDITS CARDS FROM C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\ #EPSILON...CREDITS CARDS FROM C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\ #EPSILON..
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):183
                                                                                                                                            Entropy (8bit):4.852601803162131
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:3:HMAjjF5OONtkE2J5iKKKc64E/YP9Erd6AjjF5OONtkE2J5oH+fg0cwr4E/YP9Er3:HMGjF5OCN23iKKdKQlEx6GjF5OCN23oe
                                                                                                                                            MD5:B3E81DDE363BA8E4987C6A96CD233BB7
                                                                                                                                            SHA1:F9FB0FC7658CF63C01F2527D61A3FF46D5173F47
                                                                                                                                            SHA-256:A0B02F296219A9813A31DF8162512242FA600365B79EB483CF8E88E8B2325FF6
                                                                                                                                            SHA-512:6E2A98C3E8B1365F5D2FDAD6B2F07EF4ADE49D6054BA5856F9913CFBD1536FE4E3BCB2A835581922289392C95E5ADE442B959B8DF8D58E5669FAA97B39A64C32
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.PASSWORDS FROM C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\ #EPSILON...PASSWORDS FROM C:\Users\user\AppData\Local\Microsoft\Edge\User Data\Default\ #EPSILON..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (GUI) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):146870272
                                                                                                                                            Entropy (8bit):6.7183719212678445
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:1572864:CFPFqg/QDqnOeMvLq82U/pmmKKmB7Bg2N:EQfhbbmBL
                                                                                                                                            MD5:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            SHA1:6F9C06ED0F5A43826BA928EE1C818A69A52C2C7A
                                                                                                                                            SHA-256:38C81E9D17174F56BF3C22E5994D341AD041254ADA2743160B69D893B8D51EDA
                                                                                                                                            SHA-512:B844328E8BD38B21EA94D1B501CA6E6D6B19E731A6097226F09A71466485F5717082F20BA87B3CAAE7457F43F97EBBE33CC96B59B312EBABA1B7D623E24A8F59
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b..........".......... .......#.........@..........................................`...........................................c.jC..r.f.h...............q:..........p.......VZ.....................`QZ.(...P...0...........8.f.X...HGc.`....................text...H........................... ..`.rdata....M.......M.................@..@.data....HB...j......dj.............@....pdata...q:.....r:..Vr.............@..@.00cfg..(....P.....................@..@.retplne`....`..........................rodata......p..................... ..`.tls....a..........................@...CPADinfo8..........................@..._RDATA.............................@..@malloc_h........................... ..`.rsrc..............................@..@.reloc.......p......................@..B................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):1096
                                                                                                                                            Entropy (8bit):5.13006727705212
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:4D42118D35941E0F664DDDBD83F633C5
                                                                                                                                            SHA1:2B21EC5F20FE961D15F2B58EFB1368E66D202E5C
                                                                                                                                            SHA-256:5154E165BD6C2CC0CFBCD8916498C7ABAB0497923BAFCD5CB07673FE8480087D
                                                                                                                                            SHA-512:3FFBBA2E4CD689F362378F6B0F6060571F57E228D3755BDD308283BE6CBBEF8C2E84BEB5FCF73E0C3C81CD944D01EE3FCF141733C4D8B3B0162E543E0B9F3E63
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:Copyright (c) Electron contributors.Copyright (c) 2013-2020 GitHub Inc...Permission is hereby granted, free of charge, to any person obtaining.a copy of this software and associated documentation files (the."Software"), to deal in the Software without restriction, including.without limitation the rights to use, copy, modify, merge, publish,.distribute, sublicense, and/or sell copies of the Software, and to.permit persons to whom the Software is furnished to do so, subject to.the following conditions:..The above copyright notice and this permission notice shall be.included in all copies or substantial portions of the Software...THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND,.EXPRESS OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF.MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND.NONINFRINGEMENT. IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE.LIABLE FOR ANY CLAIM, DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION.OF CONTRACT, TORT OR OTHERWISE, ARISIN
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:HTML document, ASCII text, with CRLF, LF line terminators
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):5557692
                                                                                                                                            Entropy (8bit):4.82586139211392
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:DFA12F4EDCCB902D7D3B07FAE219F176
                                                                                                                                            SHA1:C2073440A5ADD265B4143DE05E6864FED2C3B840
                                                                                                                                            SHA-256:501F0B7EBF0BE7ED8702D317332A0F8820AF837C0A2A1D7645BA04352270E2B8
                                                                                                                                            SHA-512:EEE3A8E0EEAE139DDD9369D0869C29C91007BF6C5B0D7982918D5A013214A9E80B9233E7C1CCB43124152F684F0B782831B0A6B3D126558261DD161230004E50
                                                                                                                                            Malicious:false
                                                                                                                                            Preview: Generated by licenses.py; do not edit. --><!doctype html>.<html>.<head>.<meta charset="utf-8">.<meta name="viewport" content="width=device-width">.<meta name="color-scheme" content="light dark">.<title>Credits</title>.<link rel="stylesheet" href="chrome://resources/css/text_defaults.css">.<link rel="stylesheet" href="chrome://credits/credits.css">.</head>.<body>.<span class="page-title" style="float:left;">Credits</span>.<a id="print-link" href="#" style="float:right;" hidden>Print</a>.<div style="clear:both; overflow:auto;"> Chromium <3s the following projects -->.<div class="product">.<span class="title">2-dim General Purpose FFT (Fast Fourier/Cosine/Sine Transform) Package</span>.<span class="homepage"><a href="http://www.kurims.kyoto-u.ac.jp/~ooura/fft.html">homepage</a></span>.<input type="checkbox" hidden id="0">.<label class="show" for="0" tabindex="0"></label>.<div class="licence">.<pre>Copyright(C) 1997,2001 Takuya OOURA (email: ooura@kurims.kyoto-u.ac.jp)..You may us
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):148598
                                                                                                                                            Entropy (8bit):7.923683311160288
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:237CA1BE894F5E09FD1CCB934229C33B
                                                                                                                                            SHA1:F0DFCF6DB1481315054EFB690DF282FFE53E9FA1
                                                                                                                                            SHA-256:F14362449E2A7C940C095EDA9C41AAD5F1E0B1A1B21D1DC911558291C0C36DD2
                                                                                                                                            SHA-512:1E52782DB4A397E27CE92412192E4DE6D7398EFFAF8C7ACABC9C06A317C2F69EE5C35DA1070EB94020ED89779344B957EDB6B40F871B8A15F969EF787FBB2BCA
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..................#.Z...:......k.....k.....k ....k.....k=....k.....k.....k.....l.....l.....l;....l."...l2....l.9...l.;...l.<...l.>...l'?...l.H...l.P...l.R...l{S..NziT..Oz.U..PzJW..Qz2Z..Rz+]..Sz^`..Tzod..Uz9h..Vz.k...z.o...z.p...zmr...z.s...z.t...zWu...z.u...zA....z......p.....s.....................................................=...........{.....9............"....1,....Q/.....7.....;....-E....eO.....S....3U.....]....|f....dg.....h.....j.....m.....n.....q.....s....Wu.....w.....y....2z.....{....D}................;..............................................l....N........H.............|....K....0...."...................B....0.......................Y........................o....6..............{....4....F....".........f..........L........t....>.......................:.......................:.....q.....g.....\.....T".....'....z'.....'....'(.....(.....).....*.....+....Z+.....+....+...=,...Q2...;6....6...;7....7...H8....8...a9....9
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):219575
                                                                                                                                            Entropy (8bit):7.950067097420845
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:7059AF03603F93898F66981FEB737064
                                                                                                                                            SHA1:668E41A728D2295A455E5E0F0A8D2FEE1781C538
                                                                                                                                            SHA-256:04D699CFC36565FA9C06206BA1C0C51474612C8FE481C6FD1807197DC70661E6
                                                                                                                                            SHA-512:435329D58B56607A2097D82644BE932C60727BE4AE95BC2BCF10B747B7658918073319DFA1386B514D84090304A95FCF19D56827C4B196E4D348745565441544
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..................#.[...:......k.....k.....ky....k>....k|....kw....k5&...kq+...l.....l.5...l.:...l.B...l.X...l\o...l.q...lBs...l.v...l<w...l.....l....l.....l...Nz....Oz...Pz....Qz....Rz....SzS...Tzp...UzF...Vz.....z.....z.....z.....z.....z.....z|....z.....zf....z.'.....*....3/....u8....~:.....=.....B.....N.....O.....X.....^....id.....i.....p.....r....#w.....{...............4.....%................\................\...../.....O.....\.....q.................q.................o.....m.....Z.....{.....l.............................d..........=....>....C....H....I....K....L...%N....N...OP....Q...BS....T....V....Y....]....b....j....r....s...Du....v....w...^y....z...}~...._.........y........8....W.............E.......................H...............U..............6.....Z.....{.....o.....e...................................I............(.....8.....9....l9.....9....y:.....;.....<.....<....==.....=....=...D>...dD...ZH....H...rI....J....J
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):4524696
                                                                                                                                            Entropy (8bit):6.367051782021837
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:7641E39B7DA4077084D2AFE7C31032E0
                                                                                                                                            SHA1:2256644F69435FF2FEE76DEB04D918083960D1EB
                                                                                                                                            SHA-256:44422E6936DC72B7AC5ED16BB8BCAE164B7554513E52EFB66A3E942CEC328A47
                                                                                                                                            SHA-512:8010E1CB17FA18BBF72D8344E1D63DED7CEF7BE6E7C13434FA6D8E22CE1D58A4D426959BDCB031502D4B145E29CB111AF929FCBC66001111FBC6D7A19E8800A5
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......S........................................a.............................................................................Rich....................PE..d.....2..........." ......3.........0.&.......................................E.....VTE...`A..........................................A.x.....A...... E.@.....B..!....D.."...0E....P.>.T....................{7.(...pz7..............{7..............................text...D.3.......3................. ..`.rdata........3.......3.............@..@.data....#....A.......A.............@....pdata...!....B.."...>B.............@..@.rsrc...@.... E......`D.............@..@.reloc......0E......fD.............@..B................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2714112
                                                                                                                                            Entropy (8bit):6.6777628855193685
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:21647425561F9DFA567139D2C505F585
                                                                                                                                            SHA1:EFD5B3D6A21886C6467D28C73D20BE0ACB4591E9
                                                                                                                                            SHA-256:B827172262CEA032BE8303AAE69A947A8D867006269BB8B2BC7E77619333C1B6
                                                                                                                                            SHA-512:C5316A6B2D77CF2C2949698F9CBA92FE1EC57B2AC82D55FBBEFFE71B4834EC06E83728A176F5089C91CC9544DEDA0667F39338F1E9D1A37DB69BD8BAD4AF915A
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....(!..>................................................?...........`A........................................X.'.....r.'.(............p>..............P?../....'.......................'.(...`e!.0.............'.0............................text....'!......(!................. ..`.rdata...9...@!..:...,!.............@..@.data.........(.."...f(.............@....pdata.......p>.......(.............@..@.00cfg..(.... ?......4).............@..@.tls.........0?......6).............@..._RDATA.......@?......8).............@..@.reloc.../...P?..0...:).............@..B........................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):10284336
                                                                                                                                            Entropy (8bit):6.285840716785654
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:D866D68E4A3EAE8CDBFD5FC7A9967D20
                                                                                                                                            SHA1:42A5033597E4BE36CCFA16D19890049BA0E25A56
                                                                                                                                            SHA-256:C61704CC9CF5797BF32301A2B3312158AF3FE86EADC913D937031CF594760C2D
                                                                                                                                            SHA-512:4CC04E708B9C3D854147B097E44FF795F956B8A714AB61DDD5434119ADE768EB4DA4B28938A9477E4CB0D63106CCE09FD1EC86F33AF1C864F4EA599F8D999B97
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:...'........CmnD........ Copyright (C) 2016 and later: Unicode, Inc. and others. License & terms of use: http://www.unicode.org/copyright.html .0....A..p....A.......A..`....A.......A.......A..P....A.. &...B..p&...B...&.. B...n..4B...n..GB...o..ZB.. p..mB...p...B..0r...B...r...B...r...B..Ps...B...t...B..`u...B...v...C..Pw...C...w..+C...y..>C...y..QC...{..dC..p}..wC...}...C.......C..p....C..P....C.......C.. ....C.......C.......D.. ..."D.....5D..0...FD......ZD.....jD.. ...}D.......D.......D.......D..`....D.......D.......D..P....E.......E...../E..P...BE......YE......iE..p...|E.......E.......E..`....E.......E.......E...2...F....&..F..`.&.6F....&.MF....&.gF..@.&.~F....&..F..p.&..F.. .&..F..P.&..F..pY(..F...%)..G....).7G....).YG...K*.yG...*..G..0.+..G.. .+..G....+..G..`.+..H....+..H...e+.6H....+.TH..`.-.mH....-..H....-..H....-..H..`.-..H....-..H..P....H.......I.......I..@...-I...I..@I...J..SI..`J..fI...J..yI...K...I..`K...I...K...I...M...I...p...I...q...I..`....J.......J......4J...$/.IJ..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):447488
                                                                                                                                            Entropy (8bit):6.309802860311442
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:91F11A9181583F75E2B29FCD9050C7F5
                                                                                                                                            SHA1:FD90ABC3048F3347435DFBD1075B8051AC6FFABC
                                                                                                                                            SHA-256:43A549FF51CE4EE20074999527B19FBF280A8CAA7DB0BDE957704033B6F5B330
                                                                                                                                            SHA-512:925AC2A87E436219E22A924F615669CB166E8183D6E4DD0F00ED68C16FAA3FFA10AB410106A7F81320F10205415BFF9D10976F1DC0BB695B9293B80101E4CE8A
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." ................0........................................`............`A............................................a...I...(....@..x........=...........P..................................(.......0...........X................................text............................... ..`.rdata..D...........................@..@.data...|L....... ...\..............@....pdata...=.......>...|..............@..@.00cfg..(...........................@..@.tls....!.... ......................@..._RDATA.......0......................@..@.rsrc...x....@......................@..@.reloc.......P......................@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):7040512
                                                                                                                                            Entropy (8bit):6.411129914957704
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:16DEB84C2DD1D55ED938A112B6CE92D4
                                                                                                                                            SHA1:15ED353F418030E2A3D94C2C77D45605EA9CB3C2
                                                                                                                                            SHA-256:B49922F98946952E96C03C468A4812E0B1E7A090F4E1F96489F48ACC07EBA1F8
                                                                                                                                            SHA-512:BB9EA90E01AC7E633D3E27054206C6070B352CCE196B7B70B989AF2B718DEC3506D3AAF62E3074FDC93E7E23839ED15CCB8A508305170E7BA38920CA21F4047B
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....VQ...........F......................................Pl...........`A..........................................b. ...-.c.d....Pk.......i.,............`k......jb......................ib.(... .Q.0........... .c.....0.b.@....................text...UUQ......VQ................. ..`.rdata..|....pQ......ZQ.............@..@.data........pd......Vd.............@....pdata..,.....i......`h.............@..@.00cfg..(.... k......rj.............@..@.tls....1....0k......tj.............@..._RDATA.......@k......vj.............@..@.rsrc........Pk......xj.............@..@.reloc.......`k......~j.............@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):192492
                                                                                                                                            Entropy (8bit):5.056947701287817
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:C0490D3C4FF1EE8614225043654AAF0C
                                                                                                                                            SHA1:B044484CED372B5817285B67EBA59F0AF40CB639
                                                                                                                                            SHA-256:E98F3437F6D451FB9FEC33473ABC9F07ABF0794CD45D02AE1DE48CCB9FC5C8B6
                                                                                                                                            SHA-512:3D66B9A2AA4B08B19C635D350342A162879042E926FA41E059E3C62FC68BDD73A91D6A9A41E409EEEE7338DAF0A931F178E9D151B4B9EE9EF6545F8957CCEFB4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........6.j.`F..k.oF..l.zF..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..G..}..G.....G.....G....'G..../G....7G....>G....EG....LG....MG....NG....zG.....G.....G.....G.....G.....G.....H.....H.....H....8H....jH.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I....%I....<I....HI....UI.....I.....I..*..I..+..I..,..I../..J..0."J..1.~J..2..J..3..J..4..J..5..K..6.|K..7..K..>..K..?..K..N..L..g..L..i..L..j..L..k..L..l.$L...])L...]}L...].L...].M...].M...].M...].M...].N...]hN...]~N...]FP...]hP...]qP...]zP...^.P...^.P...^.P...^"Q...^.Q...^>R...^GR...^.R...^.R...^.R...^.R...^.S...^@S...^_S...^.S...^.S...^.T..%^.T..&^)T..'^BT..)^.T..*^.T..+^.U..,^&U..-^8U...^dU../^.U..0^{V..2^,W..3^FW..4^.W..5^.W..8^.W..9^.X..:^.Y..;^.Y..<^.Y..>^gZ..?^%[..@^.\..A^.\..B^H\..C^|\..D^.^..E^._..F^.`..G^.a..I^Ha..K^Qa..L^pa..M^.a..N^.a..O^.a..T^nb..U^.b..V^fc..W^.c..X^.c..Y^.c..Z^id..[^.d..\^We..]^.e..b^Lf..d^[f..e^af..f^jf..g^.f..h^.f..i^.f..j^.f..k^.g..l^.g..o^8g..p^gg..q^.g..r^.h..s^6h
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):198772
                                                                                                                                            Entropy (8bit):5.130198020742576
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9B610C0107724603B19893C4CCC551A0
                                                                                                                                            SHA1:37D987196C640861B336628D67E22EF283115E7D
                                                                                                                                            SHA-256:F9D96AF7D5EF9E0B4F4EF133A98A64B4398C7AEF04E20688B523E6EA27C61F15
                                                                                                                                            SHA-512:E99C07E474278990027E560D0F0464ED0D59C485226B56C8318470C41B5976602B1D52659996EBEECECC3D59927577202AB6312E07F40F71EB39972AE5296BC6
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........>.j.PF..k._F..l.jF..n.rF..o.wF..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G.....G....'G.....G....5G....<G....>G....~G.....G.....G.....G.....H.... H....$H.....H....NH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I.....I....'I..../I....BI.....I.....I..*..I..+..I..,..I../..I..0..I..1.8J..2.MJ..3.fJ..4..J..5..J..6..K..7.<K..>.mK..?.xK..N..K..g..K..i..K..j..K..k..K..l..K...].K...].L...]6L...]9M...]AM...].M...].M...].M...] N...]@N...]/R...]SR...][R...]lR...^.R...^.R...^.R...^.S...^.S...^/T...^3T...^hT...^}T...^.T...^.T...^.T...^.U...^.U...^uU...^.U...^.U..%^.U..&^.U..'^.U..)^TV..*^.V..+^.V..-^.V...^.V../^.W..0^.W..1^bX..2^.Y..3^8Y..4^jY..5^.Y..8^.Y..9^dZ..:^c[..;^y[..<^.[..>^.[..?^.\..@^.]..A^'^..B^L^..C^.^..D^.b..E^zd..F^.f..G^.f..I^.f..K^.f..L^.f..M^.f..N^.g..O^dg..T^.h..U^Qh..V^.h..W^.i..X^/i..Y^.i..Z^,j..[^.j..\^'k..]^wk..b^.l..c^.l..d^.l..e^.l..f^.l..g^.l..h^.l..i^.m..j^.m..k^8m..l^hm..o^.m..p^.n..q^+n..r^.n..s^.n..t^.o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):214333
                                                                                                                                            Entropy (8bit):4.866044052884893
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:7F3FE009D84DDDF6A509AE33D95A7E7B
                                                                                                                                            SHA1:667D804C714FEAB9D104DB211A981357B2B8124F
                                                                                                                                            SHA-256:58BEC94801D09157C852CFBC3CCD9916FAFD1947FDC61C1453456BCE5B054C4E
                                                                                                                                            SHA-512:92151D7589682C7078D9F9915EB6D14D350A13A126A000E4DA29228649926282CAF03CD996E68704F9E5DD0FAF11750F7C4EE105E1655F9BECBE0E267F7FC614
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.'G..y.-G..z.<G..|.BG..}.TG....\G....aG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....H....4H....YH....[H...._H....kH....~H.....H.....H.....H....&I....WI....^I....aI....bI....vI.....I.....I.....I.....I.....I.....I.....J....cJ.....J..*..J..+..J..,..J../..K..0.&K..1..K..2..K..3..K..4..L..5.@L..6..L..7..L..>..M..?..M..N.>M..g.LM..i.OM..j.SM..k.ZM..l.hM...]mM...].M...].M...].O...]+O...]rO...].O...].O...]%P...]OP...].Q...].Q...].R...].R...^;R...^MR...^.R...^.R...^9T...^.T...^.T...^.T...^.U...^WU...^xU...^.U...^.U...^)V...^AV...^gV..%^yV..&^.V..'^.V..)^IW..*^.W..+^.W..,^.W..-^.W...^#X../^uX..0^QY..1^.Z..2^.Z..3^.Z..4^.[..5^X[..8^.[..9^t\..:^.]..;^.]..<^.]..>^X^..?^5_..@^._..A^._..B^.`..C^B`..D^.b..E^.b..F^yc..G^.c..I^#d..K^-d..L^Od..M^ad..N^.d..O^.d..T^~e..U^.e..V^.f..W^.f..X^.f..Y^Rg..Z^.h..[^.h..\^#i..]^.i..b^.j..d^.j..e^.j..f^.j..g^.k..h^.k..i^dk..j^ek..k^.k..l^.k..o^.k..p^:l..q^pl..r^.l..s^!m
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):274613
                                                                                                                                            Entropy (8bit):4.47502496975818
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:ECFF6F8DC301B6B435DF5E44C2AE8A2A
                                                                                                                                            SHA1:6FDFA4136F3BB5CCD9E4E7B4706DB98F17F85C1B
                                                                                                                                            SHA-256:3250ADECE302934B9A78569D72CA70E596D91865455D5274CCF8D651CCAC5350
                                                                                                                                            SHA-512:C9E22FF9FEF3C2EEF6B25886E32A27FD19D56C1085C993AEA1D5A1528D65735B0628B825A2834A1B8B2512D8ABF59CABB3B35044484F566057826EAA3CFA682D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........4.j.dF..k.sF..l.~F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..G..}..G.....G....$G....,G....4G....9G....AG....HG....OG....VG....WG....XG.....G.....H....7H....bH.....H.....H.....H.....H.....H.....I....;I....iI.....I.....I.....I.....I.....I.....I.....J.....J....,J....MJ....\J....tJ.....J....&K..*.DK..,.GK../.~K..0..K..1..L..2.,L..3.HL..4..L..5..L..6.}M..7..M..>..N..?. N..N.UN..g.nN..i.qN..j.uN..k.zN..l..N...].N...].N...].O...].P...].P...]9Q...]xQ...].Q...]0R...]\R...].U...]WU...]`U...]xU...^.U...^.U...^ V...^.V...^.W...^.W...^.X...^hX...^.X...^.X...^.X...^.Y...^@Y...^UY...^.Y...^.Y...^.Z..%^+Z..&^UZ..'^{Z..)^'[..*^z[..+^.[..,^.[..-^.[...^H\../^.\..0^.]..1^.^..2^.`..3^/`..4^.`..5^.`..8^.a..9^eb..:^od..;^.d..<^.d..>^4e..?^.f..@^.g..A^.g..B^.g..C^Hh..D^.k..E^Xm..F^.n..G^Po..I^.o..K^.o..L^.o..M^.o..N^.p..O^yp..T^.q..U^.q..V^.r..W^.s..X^Us..Y^}s..Z^Zt..[^.u..\^.u..]^+v..b^.w..c^.w..d^.w..e^.w..f^.w..g^/x..h^.x..i^.x..j^.x..k^.x..l^.x..o^dy..p^.y..q^.z..r^.z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136216
                                                                                                                                            Entropy (8bit):5.401900922137372
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:65C1F1FAEE2EDBE7D7B6709D7E6B6EF7
                                                                                                                                            SHA1:A81848018BC9978EDB9E764474CF9C9B297BB91C
                                                                                                                                            SHA-256:D8A83A19F8C66742226538AF9489B70C1439F6133591E29A353ADDD9089F67C6
                                                                                                                                            SHA-512:590587A66BF03C2CC61C49CB9452220B3697AD4A00ABC0056017FD0203EBC2980EC8F59337FCD1FF90EEDFA8F8171ACEF5818B1DA856EC78C352498002679FBD
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....0H....4H....;H....HH....XH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I..../I....KI..*.WI..+.ZI..,.xI../..I..0..I..1..I..2..I..3..I..4..J..5.9J..6.vJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...])K...].K...].K...].K...].L...]1L...]hL...]vL...]=M...]XM...]`M...]gM...^}M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^"O...^3O...^JO...^^O...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^0P..*^ZP..+^oP..,^.P..-^.P...^.P../^.P..0^GQ..1^.Q..2^?R..3^\R..4^.R..5^.R..8^.R..9^HS..:^.T..;^+T..<^IT..>^}T..?^.U..@^cU..A^tU..B^.U..C^.U..D^.V..E^AW..F^.W..G^.X..I^:X..K^DX..L^WX..M^bX..N^vX..O^.X..T^.X..U^.Y..V^yY..W^.Y..X^.Y..Y^.Y..Z^OZ..[^.Z..\^.Z..]^*[..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^/\..j^0\..k^E\..l^H\..o^i\..p^.\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):139589
                                                                                                                                            Entropy (8bit):5.805335191018667
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:C64366988F8D46B6912F2D6BE0120B1A
                                                                                                                                            SHA1:3A33FE58CA30F41EA341CC9B9413A6CBDD6A1E4B
                                                                                                                                            SHA-256:30FD14794EE1088D37387F42E5D366F962FA9273EBA8CCDD9B950646D2DD6172
                                                                                                                                            SHA-512:8990D212AFF170A547733B0CD54055ECF6D30319189A7D88CDA149B8994986C9CCC899D203FA4CEDCDACB3217B2B72E2A9E69AA195B285AA388BF2AF125158FE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........!.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.$G..|.*G..}.<G....DG....IG....QG....YG....aG....hG....oG....vG....wG....xG.....G.....G.....G.....G.....G.....G.....H.....H.....H....+H....9H....IH....XH....iH....pH....sH....tH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.<I../.YI..0.cI..1..I..2..I..3..I..4..I..5..I..6.4J..7.HJ..>.^J..?.fJ..N.xJ..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...]{K...].K...].K...].K...].K...].L...].L...].M...].N...].N...].N...^"N...^,N...^EN...^hN...^.N...^.O...^.O...^>O...^LO...^wO...^.O...^.O...^.O...^.O...^.O...^.P...^.P..%^ P..&^.P..'^;P..)^.P..*^.P..+^.P..-^.P...^.P../^.P..0^gQ..1^.Q..2^7R..3^MR..4^{R..5^.R..8^.R..9^.S..:^.S..;^.S..<^.T..>^CT..?^.T..@^lU..A^~U..B^.U..C^.U..D^.W..E^.X..F^lY..G^.Y..I^.Y..K^.Y..L^.Y..M^.Y..N^.Y..O^ Z..T^pZ..U^.Z..V^.Z..W^.[..X^([..Y^`[..Z^.[..[^.[..\^B\..]^m\..b^.\..c^.]..d^.]..e^.]..f^.]..g^*]..h^B]..i^Q]..j^T]..k^e]..l^h]..o^.]..p^.]..q^.]..r^.^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):127576
                                                                                                                                            Entropy (8bit):5.4328055342090105
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9FB8A421CAF18588B494C3F34D8764C6
                                                                                                                                            SHA1:201AC33074C76830893197AB9382EC84553F1794
                                                                                                                                            SHA-256:0997BE868557F97F013242C066B192E574B4FA553D13F37F97A1DE714B95A858
                                                                                                                                            SHA-512:59B2FD820F9BD45015444C85FCB55E04027836E62C6A9187E8CE0C2A9AEA6E5E626B76627C9601F69E769D4DDD09F6A8CCC2DFDDA6835E261B94A5AF91D8BBF9
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....%H....2H....=H....QH....cH....jH....mH....nH....uH....~H.....H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.&I..0.0I..1.^I..2.jI..3.tI..4..I..5..I..6..I..7..I..>..I..?..J..N..J..g..J..i.!J..j.%J..k.*J..l./J...]4J...]]J...].J...]6K...]<K...]ZK...]hK...]xK...].K...].K...].M...](M...]/M...]5M...^BM...^OM...^.M...^.M...^4N...^`N...^iN...^.N...^.N...^.N...^.N...^.N...^.N...^.N...^,O...^3O...^FO..%^IO..&^]O..'^eO..)^.O..*^.O..+^.O..,^.O..-^.O...^.P../^(P..0^.P..1^.P..2^UQ..3^gQ..4^.Q..5^.Q..8^.Q..9^.R..:^.R..;^.R..<^.R..>^.S..?^fS..@^.S..A^.S..B^.T..C^.T..D^CU..E^.U..F^YV..G^.V..I^.V..K^.V..L^.V..M^.V..N^.V..O^.W..T^IW..U^oW..V^.W..W^.X..X^.X..Y^<X..Z^.X..[^.X..\^.Y..]^JY..b^.Y..d^.Y..e^.Y..f^.Y..g^.Y..h^.Z..i^!Z..j^"Z..k^0Z..l^3Z..o^HZ..p^}Z..q^.Z..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136414
                                                                                                                                            Entropy (8bit):5.486129891558703
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:A4D8EECEC2747FFB12551AB8E93FAFDF
                                                                                                                                            SHA1:59AA4C3A7179C46C7699D0D918DD92722A614DEF
                                                                                                                                            SHA-256:D67F95E2982E7DEBF67741B88CE054F5BB8356021A280E092227B77EC82E298F
                                                                                                                                            SHA-512:1DE20FA8798D050966C99AA0590C7460A40B6FF41AFC36645C1F4655A09F6070530ADBD1D6FB5937D1FC9965C7AAC932DBB06A0FF47F31BCB6D4717EAA81613E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........F.j.@F..k.OF..l.ZF..n.bF..o.gF..p.tF..q.zF..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....G.....G.....G.....G....%G....,G....-G.....G....gG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....-H....FH....MH....PH....QH....[H....eH....yH.....H.....H.....H.....H.....H.....H.....H..*..H..+..I..,..I.././I..0.7I..1.\I..2.jI..3.sI..4..I..5..I..6..J..7..J..>.*J..?.2J..N.GJ..g.RJ..i.UJ..j.YJ..k.bJ..l.hJ...]uJ...].J...].J...]{K...].K...].K...].K...].K...].L...],L...]%M...]<M...]CM...]IM...^fM...^sM...^.M...^.M...^VN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^.O...^2O...^mO...^{O...^.O..%^.O..&^.O..'^.O..)^.P..*^#P..+^4P..,^DP..-^JP...^mP../^.P..0^.Q..1^.Q..2^TR..3^kR..4^.R..5^.R..8^.R..9^SS..:^!T..;^0T..<^LT..>^tT..?^.T..@^ZU..A^aU..B^lU..C^.U..D^.V..E^.W..F^.W..G^.X..I^)X..K^2X..L^@X..M^IX..N^XX..O^.X..T^.X..U^.Y..V^.Y..W^.Y..X^.Y..Y^.Y..Z^2Z..[^.Z..\^.Z..]^.[..b^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.\..j^.\..k^#\..l^&\..o^>\..p^h\..q^.\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):235472
                                                                                                                                            Entropy (8bit):4.928800315357694
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:DC334C39FA35F04D554FD6BF4D6301BE
                                                                                                                                            SHA1:8F83F39B41447E479E1DE761721FC35B22A1F227
                                                                                                                                            SHA-256:168FDC777570FA85C16EE7A701BEF28FE6D7EB943A674AD8681A2F9FCEDD2635
                                                                                                                                            SHA-512:E4F0FE4AC83DF9F106D60DE2D4563519512D1B088ABB0FD52D4D459CCF093397C5F56E41958111AD67AB9A19DC2A9DD6870356BE2E344559DEAF757D3B96B7A1
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.*G..|.0G..}.BG....JG....OG....WG...._G....gG....nG....uG....|G....}G....~G.....G.....H....+H....eH.....H.....H.....H.....H.....H.....H.....I....2I...._I.....I.....I.....I.....I.....I.....I.....I.....I.....J.....J...."J....2J.....J.....J..*..J..+..K..,. K../.pK..0..K..1..L..2.2L..3.JL..4..L..5..L..6.TM..7.|M..>..M..?..M..N..M..g..M..i..N..j..N..k..N..l..N...].N...]tN...].N...].O...].O...]CP...]jP...].P...].Q...]0Q...].R...].S...].S...]#S...^WS...^iS...^.S...^.S...^/U...^.U...^.U...^.V...^)V...^]V...^mV...^.V...^.V...^.V...^oW...^.W...^.W..%^.W..&^.W..'^.X..)^.X..*^.X..+^.Y..,^.Y..-^FY...^.Y../^.Y..0^.Z..1^.[..2^.\..3^.\..4^:]..5^a]..8^.]..9^.^..:^;`..;^V`..<^z`..>^.`..?^.a..@^sb..A^.b..B^.b..C^.b..D^.d..E^.e..F^.f..G^Qg..I^.g..K^.g..L^.g..M^.g..N^.g..O^8h..T^.h..U^.i..V^.i..W^Wj..X^xj..Y^.j..Z^.k..[^Ll..\^.m..]^jm..b^.n..c^.n..d^.n..e^.n..f^.n..g^.n..h^.o..i^3o..j^4o..k^So..l^Vo..o^.o..p^.o..q^.o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):112584
                                                                                                                                            Entropy (8bit):5.476085642762499
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:998947B55A25776181CC11110902F6D7
                                                                                                                                            SHA1:A93272EB26EB9977833FB809DF593759F2533570
                                                                                                                                            SHA-256:FCBCDFB71363750A9E404A365A00F196C9ED4FE149532580F149811475B45636
                                                                                                                                            SHA-512:A58B9B8BF6C2C2B14F870FDD3557B18AA002F5CC8C270EB0D35A1AAB3CB864CF472328F0515039515879C9B355569B7D049CA1A1569304CF347B40B5815B726F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v."G..w./G..y.5G..z.DG..|.JG..}.\G....dG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....(H....8H....MH....bH....iH....lH....mH....uH....}H.....H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../..I..0.!I..1.UI..2.cI..3.iI..4.}I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k..J..l..J...]#J...]DJ...]SJ...].J...].J...].J...].J...].J...]"K...]/K...].K...].K...].K...].K...^.L...^.L...^.L...^=L...^.L...^.L...^.L...^.L...^.L...^.L...^.L...^.M...^(M...^5M...^mM...^wM...^.M..%^.M..&^.M..'^.M..)^.M..*^.N..+^.N..,^.N..-^.N...^*N../^PN..0^.N..1^.N..2^UO..3^dO..4^.O..5^.O..8^.O..9^(P..:^.P..;^.P..<^.P..>^.Q..?^{Q..@^.Q..A^.Q..B^.Q..C^.R..D^.R..E^wS..F^.S..G^.T..I^8T..K^>T..L^HT..M^OT..N^ZT..O^vT..T^.T..U^.T..V^,U..W^@U..X^PU..Y^tU..Z^.U..[^.V..\^OV..]^sV..b^.V..c^.V..d^.W..e^.W..f^.W..g^.W..h^2W..i^EW..j^FW..k^QW..l^TW..o^kW..p^.W..q^.W
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):113481
                                                                                                                                            Entropy (8bit):5.470392531977106
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:5CC884BF0EC1C702240173B35A421D1B
                                                                                                                                            SHA1:19BDFB0B31DC4A75E7C135D1A8EF76F5F6CC3A31
                                                                                                                                            SHA-256:9F0C75C84381360677055D6197812C7A6C42DBFC6134EB8212D8A60ED1CA1601
                                                                                                                                            SHA-512:48772F50F6B0D846084A0CFB0D6433F2FBF73677B557B022D0D73D04790636C0C40ED873C32FD037013E943FB7C24816EFDCDE38429520895C00C2D85A17EA5C
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..G..r..G..s."G..t.+G..v.@G..w.MG..y.SG..z.bG..|.hG..}.zG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....!H....%H....,H....6H....FH....VH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H..*..I..+..I..,.%I../.6I..0.?I..1.rI..2..I..3..I..4..I..5..I..6..I..7..I..>..J..?..J..N..J..g.(J..i.+J..j./J..k.4J..l.;J...]@J...]aJ...]pJ...].J...].J...].J...].K...].K...]?K...]LK...].L...].L...]"L...](L...^1L...^9L...^KL...^jL...^.L...^.L...^.L...^.M...^.M...^.M...^&M...^9M...^UM...^bM...^.M...^.M...^.M..%^.M..&^.M..'^.M..)^.N..*^-N..+^7N..,^CN..-^GN...^VN../^xN..0^.N..1^.O..2^yO..3^.O..4^.O..5^.O..8^.O..9^OP..:^.P..;^.Q..<^.Q..>^>Q..?^.Q..@^.R..A^.R..B^'R..C^@R..D^5S..E^.S..F^:T..G^kT..I^.T..K^.T..L^.T..M^.T..N^.T..O^.T..T^.U..U^+U..V^.U..W^.U..X^.U..Y^.U..Z^%V..[^gV..\^.V..]^.V..b^PW..c^WW..d^]W..e^bW..f^fW..g^xW..h^.W..i^.W..j^.W..k^.W..l^.W..o^.W..p^.W..q^.X
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):135123
                                                                                                                                            Entropy (8bit):5.373057629573399
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:10B1D1097987EA050A5791ECEB5EABDA
                                                                                                                                            SHA1:C0812FBC16592A39CD1600196E62D0000B22BD73
                                                                                                                                            SHA-256:04B24396CC017E1DBB0BCA7371D7CAE10CAD2350DA661A8A035B572AA76CBD49
                                                                                                                                            SHA-512:F2A6767EAE2D5EEBFF35F6B7D3A932FFD797FDFB48023C75B3C98B1CED5B3695EC12E642D68582DA1AACAC1C59B0D3A2F029C702D0DF02D7B08430384D40E178
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.)G..y./G..z.>G..|.DG..}.VG....^G....cG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....!H....2H....EH....XH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....5I..*.@I..+.CI..,.aI../..I..0..I..1..I..2..I..3..I..4..J..5.*J..6.qJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]3K...].K...].K...].L...]!L...]4L...]hL...]wL...]TM...]uM...]~M...].M...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^&O...^/O...^AO...^UO...^cO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^4P..*^hP..+^xP..,^.P..-^.P...^.P../^.P..0^EQ..1^.Q..2^SR..3^sR..4^.R..5^.R..8^.R..9^_S..:^)T..;^@T..<^UT..>^.T..?^.U..@^yU..A^.U..B^.U..C^.U..D^.V..E^.W..F^.W..G^.W..I^.X..K^.X..L^)X..M^4X..N^BX..O^hX..T^.X..U^.X..V^JY..W^jY..X^}Y..Y^.Y..Z^.Z..[^jZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^.\..j^.\..k^*\..l^-\..o^T\..p^.\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136317
                                                                                                                                            Entropy (8bit):5.340572969000703
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:460ED6807D7A0E5DDE909D706B4F267C
                                                                                                                                            SHA1:D4948B217B8A2E620E7AAC7A04C2E8483AA84B3C
                                                                                                                                            SHA-256:665E93CA25DE6050A4FBC1F343D67496D6E1E296DBBCC9EDF3DAB7BBCF1035DB
                                                                                                                                            SHA-512:FA6C57DCFDB6E53FA13FBB353C3C581C3DFBD4D34AE7612B1F780F4DA944DA253767FE86AB3C5A3EAE918A339649828643FD50B9F66BB943F29924E713891D98
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....!H..../H....@H....SH....fH....~H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....>I..*.II..+.LI..,.jI../..I..0..I..1..I..2..I..3..I..4..J..5. J..6.lJ..7.}J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]"K...].K...].K...].K...].L...].L...]?L...]NL...]%M...]@M...]IM...]OM...^`M...^nM...^.M...^.M...^YN...^.N...^.N...^.N...^.N...^.O...^.O...^!O...^:O...^HO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^)P..*^]P..+^mP..,^.P..-^.P...^.P../^.P..0^GQ..1^.Q..2^6R..3^VR..4^.R..5^.R..8^.R..9^5S..:^.S..;^.S..<^.T..>^HT..?^.T..@^.U..A^$U..B^6U..C^[U..D^VV..E^.V..F^JW..G^.W..I^.W..K^.W..L^.W..M^.W..N^.W..O^'X..T^yX..U^.X..V^.Y..W^?Y..X^RY..Y^.Y..Z^.Z..[^eZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.\..j^.\..k^.\..l^.\..o^1\..p^V\..q^y\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):123538
                                                                                                                                            Entropy (8bit):5.464890802945206
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9EB930ED036C2828877BBEAED94071B2
                                                                                                                                            SHA1:B410F1CBD1774FD2036C5E8424022554B1FC61F9
                                                                                                                                            SHA-256:502AB41D852C69EA961DF20B79480FD9D38F99BBAD07A4D1B5E7143BA1F7BDC3
                                                                                                                                            SHA-512:86A0C8C6ED19C801705D0CD07A5634C6D234329D4A3AFC10F2E221ABE6A21DEA0F3CB808E2DAF94BDF113B64B7ACDE6AC836BA238D9F8B5F7BB355DA1346E402
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.;G..y.AG..z.PG..|.VG..}.hG....pG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....#H....%H....)H....5H....AH....JH....ZH....iH....~H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.'I..+.*I..,.HI../.bI..0.oI..1..I..2..I..3..I..4..I..5..I..6..J..7.5J..>.NJ..?.VJ..N.eJ..g.oJ..i.rJ..j.vJ..k.}J..l..J...].J...].J...].J...]}K...].K...].K...].K...].K...].L...] L...].L...].M...].M...].M...^-M...^3M...^MM...^tM...^.M...^ N...^%N...^UN...^dN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^.O..%^.O..&^1O..'^?O..)^.O..*^.O..+^.O..,^.O..-^.O...^.O../^.P..0^tP..1^.P..2^LQ..3^^Q..4^.Q..5^.Q..8^.Q..9^(R..:^.R..;^.R..<^.R..>^$S..?^.S..@^.T..A^.T..B^.T..C^FT..D^>U..E^.U..F^.V..G^RV..I^lV..K^tV..L^.V..M^.V..N^.V..O^.V..T^.W..U^+W..V^.W..W^.W..X^.W..Y^.W..Z^AX..[^.X..\^.X..]^.X..b^gY..d^nY..e^qY..f^vY..g^.Y..h^.Y..i^.Y..j^.Y..k^.Y..l^.Y..o^.Y..p^.Z..q^DZ..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):190789
                                                                                                                                            Entropy (8bit):5.232451563180468
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:993FFA47D0354C2A9B9B4D378026E653
                                                                                                                                            SHA1:416EF059058FAE7E91D79E94C0AE4CC56D604F3B
                                                                                                                                            SHA-256:309CEC5292EE0361D45796C2234CF40A064249DA09108B1DA75BF570963941A2
                                                                                                                                            SHA-512:D1ED53F52858090641058AD924E42BAD29610E8E7546279325335C4D8EB9F5830FFE32FA35DACB18040090078A4466199A586D3EA4E82247B73BAB02ECEB17C7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........P.j.,F..k.;F..l.FF..n.NF..o.SF..p.`F..q.fF..r.uF..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....G.....G.....G.....G.....G....bG....|G.....G.....G.....G.....G.....G.....G.....H....$H....JH....gH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I....oI.....I..*..I..+..I..,..I../..I..0..J..1.GJ..2.VJ..3.iJ..4..J..5..J..6.,K..7.dK..>..K..?..K..N..K..g..K..i..K..j..K..k..K..l..K...].K...]CL...]nL...]lM...].M...].M...].M...].N...]lN...].N...]YP...].P...].P...].P...^.P...^.P...^"Q...^kQ...^GR...^.R...^.R...^.R...^.S...^>S...^HS...^pS...^.S...^.S...^.T...^)T...^GT..%^QT..&^mT..'^.T..)^.T..*^(U..+^CU..,^_U..-^gU...^.U../^.U..0^.V..1^.W..2^.X..3^.X..4^.X..5^.Y..8^)Y..9^.Z..:^K[..;^l[..<^.[..>^.[..?^.\..@^.]..A^.]..B^.]..C^.]..D^_`..E^Ua..F^Kb..G^.b..K^.b..L^.c..M^.c..N^)c..O^nc..T^.c..U^Kd..V^.d..W^.e..X^*e..Y^he..Z^.e..[^rf..\^.f..]^'g..b^.g..d^.g..e^.h..f^.h..g^3h..h^Qh..i^rh..j^sh..k^.h..l^.h..o^.h..p^.h..q^-i..r^.i..s^.i..t^.j..v^!j
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):125760
                                                                                                                                            Entropy (8bit):5.447273613792246
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:DD7E21B02BDCED910A171D592FAE0B18
                                                                                                                                            SHA1:CC28F1B8F0B06E71DAC3802EE26F644837982FA5
                                                                                                                                            SHA-256:9E1C20ECDBE9D15386ED493D0AC839612CC91A2284D5A97D9DC38EA2C90A3DC1
                                                                                                                                            SHA-512:12B3FD4BA110087074D5BEF6237EEBA96EDEFBCC31BB701142DA058034AF591A627B7B07550670689733A32C747991AE4555884796D29631B7865D06B13E90F7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........#.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z. G..|.&G..}.8G....@G....EG....MG....UG....]G....dG....kG....rG....sG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....%H....7H....FH....UH....\H...._H....`H....iH....qH....xH....}H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.)I..0.7I..1.oI..2.}I..3..I..4..I..5..I..6..I..7..J..>.;J..?.DJ..N.cJ..g.nJ..i.qJ..j.uJ..k.zJ..l..J...].J...].J...].J...]gK...]lK...].K...].K...].K...].K...].L...].L...].M...].M...].M...^!M...^*M...^=M...^mM...^.M...^.N...^.N...^2N...^@N...^_N...^dN...^sN...^.N...^.N...^.N...^.N...^.N..%^.N..&^.O..'^.O..)^VO..*^{O..+^.O..,^.O..-^.O...^.O../^.O..0^VP..1^.P..2^.Q..3^+Q..4^UQ..5^bQ..8^.Q..9^.R..:^.R..;^.R..<^.R..>^"S..?^.S..@^.S..A^.S..B^.T..C^*T..D^.U..E^.U..F^.V..G^5V..I^UV..K^YV..L^gV..M^sV..N^.V..O^.V..T^.V..U^.W..V^`W..W^rW..X^.W..Y^.W..Z^.W..[^>X..\^.X..]^.X..b^.Y..d^ Y..e^(Y..f^-Y..g^DY..h^[Y..i^qY..j^rY..k^.Y..l^.Y..o^.Y..p^.Y..q^.Y..r^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):140356
                                                                                                                                            Entropy (8bit):5.190245344679947
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9F3A970C8FED49AC50BDDBF09DD9A950
                                                                                                                                            SHA1:E8B986D42D4A79C513BF2DA3D3314FBF55A2A960
                                                                                                                                            SHA-256:7A4C4822516F47CDBABC4B9EF45B710B057A056BC29D3A4A270A22E963E257D3
                                                                                                                                            SHA-512:4533A05B38E45F8CEDFFDECEFB77ED9AF44ABA799F030A770B616EC7867FD0D7893DE67528A611D1002D18E3EE7F8799944804E008EC8217CBF59E03A19139B5
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..G..s..G..t..G..v.0G..w.=G..y.CG..z.RG..|.XG..}.jG....rG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....!H....#H....'H....-H....7H....@H....WH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H....2I....YI..*.gI..+.jI..,..I../..I..0..I..1..I..2..I..3..I..4..J..5.5J..6.nJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]0K...].K...].K...].K...].K...].L...]EL...]ZL...].M...].M...].M...].M...^.M...^.M...^.M...^&N...^.N...^.N...^.N...^.O...^.O...^)O...^3O...^MO...^fO...^zO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^EP..*^gP..+^wP..,^.P..-^.P...^.P../^.P..0^>Q..1^.Q..2^.R..3^5R..4^fR..5^~R..8^.R..9^,S..:^.S..;^.T..<^.T..>^JT..?^.T..@^YU..A^eU..B^yU..C^.U..D^.W..E^.W..F^vX..G^.X..I^.X..K^.X..L^.X..M^.Y..N^.Y..O^;Y..T^.Y..U^.Y..V^.Z..W^2Z..X^IZ..Y^yZ..Z^.Z..[^1[..\^.[..]^.[..b^X\..c^c\..d^k\..e^p\..f^t\..g^.\..h^.\..i^.\..j^.\..k^.\..l^.\..o^.\..p^ ]..q^?]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):145490
                                                                                                                                            Entropy (8bit):5.383401113888468
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B7AD524464A61CFE4A5BE1D41C069D4B
                                                                                                                                            SHA1:9EB5C98999D5EA3B0BE56DDEC39BAF58BA5EB078
                                                                                                                                            SHA-256:5B9951426B8783B203B8ED44EBAB916CA8AF020B9E0A32F7249ED9021CCE1C3C
                                                                                                                                            SHA-512:9B6B3274A98097E79DA946B90DA8B0A50575D202A8D76A07868CE03BCAC69C1B848A9A28A55814683E44C8760E5D7A0F25CFF18C974349FB393B9BDAAAADA8E4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.(G..|..G..}.@G....HG....MG....UG....]G....eG....lG....sG....zG....{G....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....7H....NH....fH....mH....pH....qH....yH.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.9I../.PI..0.^I..1..I..2..I..3..I..4..I..5..I..6.BJ..7.SJ..>.kJ..?.vJ..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].K...]4L...]HL...]jM...]}M...].M...].M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^%O...^.O...^EO...^hO...^.O...^.O...^.O...^.O..%^.O..&^.P..'^ P..)^sP..*^.P..+^.P..-^.P...^.P../^.Q..0^.Q..1^2R..2^.R..3^.R..4^.S..5^.S..8^6S..9^.S..:^.T..;^.T..<^.T..>^.T..?^.U..@^?V..A^RV..B^oV..C^.V..D^SX..E^$Y..F^.Y..G^)Z..K^UZ..L^hZ..M^rZ..N^.Z..O^.Z..T^.[..U^2[..V^.[..W^.[..X^.[..Y^.\..Z^.\..[^.\..\^Z]..]^.]..b^H^..c^Q^..d^X^..e^\^..f^b^..g^{^..h^.^..i^.^..j^.^..k^.^..l^.^..o^.^..p^._..q^0_..r^s_..s^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):265683
                                                                                                                                            Entropy (8bit):4.514931934952092
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:45943AE45049D9B7D76068D3721D6C8F
                                                                                                                                            SHA1:0BC3F9B24F0C8CA0078AC7780A21F623B8D7F9E6
                                                                                                                                            SHA-256:AA885CBBF8A13FB95405CC3DCA6677545FD51E303A65897D14ED019955C040DA
                                                                                                                                            SHA-512:7CD2BEC685CE103DCB0900BE832C472BCD1619F549FFC2864A2AE61B60B06565ACC95DC25222521E192362F8D3C4F8816BD1C3438AF7BAD826561247326CBA99
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........2.j.hF..k.wF..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}..G...."G....'G..../G....7G....?G....FG....MG....TG....UG....VG.....G.....G.....H....BH....zH....|H.....H.....H.....H.....H.....I....+I....XI....|I.....I.....I.....I.....I.....I.....I.....I.....J....$J....0J....RJ.....J.....J..*..K..+..K..,.-K../.aK..0..K..1..K..2..L..3.$L..4.XL..5..L..6..L..7.%M..>..M..?..M..N..M..g..M..i..M..j..M..k..M..l..M...].M...]FN...].N...].O...].O...]&P...]iP...].P...]>Q...]dQ...]4T...]\T...]eT...]zT...^.T...^.T...^/U...^.U...^.V...^.V...^.W...^^W...^zW...^.W...^.W...^.W...^4X...^`X...^.Y...^0Y...^aY..%^pY..&^.Y..'^.Y..)^\Z..*^.Z..+^.Z..,^.Z..-^.[...^E[../^.[..0^.\..1^.]..2^.^..3^.^..4^%_..5^N_..8^._..9^.`..:^.b..;^.b..<^.b..>^ic..?^.d..@^.e..A^.e..B^.f..C^.f..D^&j..E^.k..F^.l..G^em..I^.m..K^.m..L^.m..M^.n..N^+n..O^.n..T^6o..U^.o..V^.p..W^.p..X^.p..Y^Vq..Z^?r..[^.s..\^.s..]^.t..b^Vu..c^ru..d^.u..e^.u..f^.u..g^.u..h^]v..i^.v..j^.v..k^.v..l^.v..o^Bw..p^.w..q^.w
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):167370
                                                                                                                                            Entropy (8bit):4.897123170448971
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:3716C23FA0D68B698F5FD41153757622
                                                                                                                                            SHA1:800CC99237FD8C2151C90E01D6C78978617C0F27
                                                                                                                                            SHA-256:45E428FE527BCC746039A9822DB7F5DF12FD651452209A8746182383C2C004EC
                                                                                                                                            SHA-512:D738DA7FBB6BDA597F2C381C533BA70B8E0A8417E943A17FC91AF455492B04E7607CDD89EB3CB6D2D70F0B87BF89BFBD6FD96DF18603F0FAE485FEE9C7FFFD70
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........=.j.RF..k.aF..l.lF..n.tF..o.yF..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G....!G....)G....0G....7G....>G....?G....@G.....G.....G.....G.....G.....G.....G.....G.....H....,H....?H....VH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....TI....{I..*..I..+..I..,..I../..I..0..I..1..J..2..J..3.*J..4.NJ..5.}J..6..J..7..J..>..J..?..K..N..K..g.&K..i.)K..j.-K..k.2K..l.:K...]?K...]tK...].K...]cL...]pL...].L...].L...].L...]GM...]cM...].O...].O...].O...].P...^$P...^0P...^[P...^.P...^[Q...^.Q...^.Q...^.Q...^.R...^:R...^BR...^QR...^uR...^.R...^.R...^.R...^.R..%^.S..&^$S..'^;S..)^.S..*^.S..+^.S..,^.S..-^.T...^-T../^iT..0^.T..1^.U..2^/V..3^GV..4^yV..5^.V..8^.V..9^`W..:^OX..;^lX..<^.X..>^.X..?^xY..@^fZ..A^xZ..B^.Z..C^.Z..D^T]..E^~^..F^._..G^.`..I^5`..K^?`..L^V`..M^c`..N^x`..O^.`..T^.a..U^Aa..V^.a..W^.a..X^.b..Y^Zb..Z^.b..[^%c..\^.c..]^.c..b^od..c^yd..d^.d..e^.d..f^.d..g^.d..h^.d..i^.d..j^.d..k^.e..l^.e..o^6e..p^pe..q^.e
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):273942
                                                                                                                                            Entropy (8bit):4.493588587563909
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0CE87D6655517DCB4D74E5130F235C89
                                                                                                                                            SHA1:0A61C0E385523BC55B3AB2435E7D1231548D3BD2
                                                                                                                                            SHA-256:79FC8A24C93E19ED052DDC0F158E516198A10DF7280265CCB769EE196A438CD7
                                                                                                                                            SHA-512:18ED9D0D354CD8DE96A54A6F793E6C59FF476F02106F7C3CA309175DFBDB00271AA3290BA9805F1B9484E7FAF2CC44E3AC93AA69B7D30C8E99EE31E29D7E4808
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........A.j.JF..k.YF..l.dF..n.lF..o.qF..p.~F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....G.....G.....G.....G....!G....(G..../G....6G....7G....8G.....G.....G.....H....<H....mH....oH....sH.....H.....H.....H.....H.....I....FI....pI....wI....zI....|I.....I.....I.....I.....I.....J....*J....CJ....YJ.....J.....J..*..K..+..K..,.-K../.mK..0..K..1..L..2.#L..3.CL..4..L..5..L..6..M..7.YM..>..M..?..M..N..M..g..N..i..N..j..N..k. N..l..N...]3N...].N...]SO...].Q...].Q...].R...]FR...].R...]2S...]^S...].V...].V...].V...].V...^TW...^fW...^.W...^!X...^.Y...^8Z...^NZ...^.[...^:[...^.[...^.[...^.\...^c\...^.\...^:]...^^]...^z]..%^.]..&^.]..'^.]..)^.^..*^.^..+^._..,^G_..-^W_...^._../^.`..0^.a..1^.a..2^.b..3^.c..4^^c..5^.c..8^.c..9^.e..:^.f..;^.f..<^.g..>^.g..?^.h..@^.i..A^$j..B^Uj..C^.j..D^.m..E^.o..F^Ap..G^.p..I^.q..K^.q..L^;q..M^Mq..N^lq..O^.r..T^?s..U^.s..V^.t..W^.t..X^.t..Y^2u..Z^.v..[^.v..\^.w..]^Dx..b^xy..d^.y..e^.y..f^.y..g^.y..h^Bz..i^.z..j^.z..k^.z..l^.z..o^#{..p^.{..q^I|..r^.|
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133955
                                                                                                                                            Entropy (8bit):5.502579129345829
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B8A77FDFDF62A844C90FE62DE0B6858A
                                                                                                                                            SHA1:B601AB105FCB328AF4B17B3E1DBEBF94ECDDAB33
                                                                                                                                            SHA-256:AD13BAB195D7619C58494D592CB11C22DDDCF3B2735804BE60F951F87DDD734B
                                                                                                                                            SHA-512:164122955B11EAF5E88BC61366C473B7A67C12B858BDAB407C189DC74ACA75C406075BFC0BD5877FA0B3857BA5DAD81C9795EB55D3DBE7EADA67B03D1BFAA442
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....%H....8H....NH....dH....kH....nH....oH....zH.....H.....H.....H.....H.....H.....H.....H.....H.....I..*..I..+..I..,.4I../.MI..0.SI..1..I..2..I..3..I..4..I..5..I..6.%J..7.>J..>.XJ..?.aJ..N.rJ..g.{J..i.~J..j..J..k..J..l..J...].J...].J...].J...]xK...].K...].K...].K...].K...].K...].L...].M...].M...].M...].M...^.M...^.M...^.N...^>N...^.N...^.N...^.O...^,O...^<O...^oO...^vO...^.O...^.O...^.O...^.O...^.O...^.O..%^.P..&^ P..'^1P..)^yP..*^.P..+^.P..,^.P..-^.P...^.P../^.Q..0^.Q..1^.Q..2^LR..3^`R..4^.R..5^.R..8^.R..9^%S..:^.S..;^.S..<^.T..>^BT..?^.T..@^zU..A^.U..B^.U..C^.U..D^.W..E^.X..F^yY..G^.Y..I^.Y..K^.Y..L^.Y..M^.Y..N^.Z..O^1Z..T^pZ..U^.Z..V^.Z..W^.[..X^-[..Y^U[..Z^.[..[^.\..\^Z\..]^.\..b^.]..d^.]..e^"]..f^(]..g^@]..h^U]..i^g]..j^h]..k^{]..l^~]..o^.]..p^.]..q^.^..r^H^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):144547
                                                                                                                                            Entropy (8bit):5.634145281802686
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:873CA729BBFEAB336795E1696289B191
                                                                                                                                            SHA1:BEF9CC201BCA2D433E2DC183C96425A542BC3F01
                                                                                                                                            SHA-256:D7C29C66D265129EDE1019C708BD0A358D6B820366509845834752EC2EF705DA
                                                                                                                                            SHA-512:2973C94779893C1F4D8725677355D71EDEA2599077EEFE7DAD6D4E4392AB036C0633440D2578A2D51947007ADF9DFE859F9B50E39CE7D7482992D5A3790CFDC4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z..G..|.4G..}.FG....NG....SG....[G....cG....kG....rG....yG.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H...."H....)H....>H....SH....mH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I.....I....QI....sI..*.|I..+..I..,..I../..I..0..I..1..I..2..I..3..J..4.%J..5.GJ..6..J..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].K...]2K...]TK...].L...]"L...]TL...]vL...].L...].L...].L...].M...].N...].N...].N...^+N...^9N...^LN...^yN...^.O...^DO...^MO...^xO...^.O...^.O...^.O...^.O...^.O...^.O...^)P...^9P...^KP..%^RP..&^dP..'^tP..)^.P..*^.P..+^.P..,^.P..-^.Q...^ Q../^@Q..0^.Q..1^$R..2^.R..3^.R..4^.R..5^.R..8^.S..9^.S..:^sT..;^.T..<^.T..>^.T..?^dU..@^.U..A^.U..B^.U..C^.V..D^.W..E^.W..F^.X..G^XX..I^.X..K^.X..L^.X..M^.X..N^.X..O^.X..T^CY..U^lY..V^.Y..W^.Y..X^.Z..Y^UZ..Z^.Z..[^ [..\^.[..]^.[..b^o\..c^}\..d^.\..e^.\..f^.\..g^.\..h^.\..i^.\..j^.\..k^.\..l^.\..o^.]..p^P]..q^.]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):121818
                                                                                                                                            Entropy (8bit):5.360373815575629
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:E61A4D062CD61972A534A5E86E49C34D
                                                                                                                                            SHA1:C19BE8F744B956753CE40D91A34F0DA02F699FFA
                                                                                                                                            SHA-256:D00C7EE5EDEB1BD1493C49CF2D124FFDF47405D21D8D43C1A41C8749CE5C86A3
                                                                                                                                            SHA-512:7DE4453B0793DDE96503E762D4E9A77835DDBB1D75D35F012D24E8453A90AC85F87B0A62D95AD68393901A8AC3FCB147CF2B7BD468DFFA62D959133528AF15F9
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........$.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z..G..|.$G..}.6G....>G....CG....KG....SG....[G....bG....iG....pG....qG....rG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....4H....IH....PH....SH....TH....\H....dH....lH....qH....wH.....H.....H.....H.....H.....H..*..H..+..H..,..I../..I..0..I..1.II..2.[I..3.eI..4..I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k.!J..l.)J...].J...]VJ...]pJ...].K...].K...],K...];K...]jK...]yK...]hL...].L...].L...].L...^.L...^.L...^.L...^.L...^^M...^.M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^*N...^iN...^rN...^.N..%^.N..&^.N..'^.N..)^.N..*^.N..+^.O..,^.O..-^.O...^4O../^fO..0^.O..1^;P..2^.P..3^.P..4^.P..5^.P..8^.Q..9^.Q..:^SR..;^bR..<^tR..>^.R..?^.S..@^qS..A^.S..B^.S..C^.S..D^.T..E^.U..F^{U..G^.U..I^.U..K^.U..L^.U..M^.U..N^.V..O^.V..T^^V..U^.V..V^.V..W^.V..X^.W..Y^+W..Z^.W..[^.W..\^.X..]^=X..b^.X..c^.X..d^.X..e^.X..f^.X..g^.X..h^.Y..i^&Y..j^'Y..k^5Y..l^8Y..o^QY..p^uY..q^.Y..r^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):134374
                                                                                                                                            Entropy (8bit):5.276015939200961
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:A2E2D2B990CFFD395772D2F146084775
                                                                                                                                            SHA1:30EB2B67223104E72FD4CBD3448B01442928FC56
                                                                                                                                            SHA-256:27C74ECE0AA92E15D2F26628C4E132AF03A6DB5384E24504932C45912ABA7268
                                                                                                                                            SHA-512:8D874A43DC7FD2933CE4B81C8CB8D17C709E1947CCA8867614F726A34600F8B59689FB7DF50C7502FC21CC99785074723E4502622C677E5239D598CAC8962E00
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y.%G..z.4G..|.:G..}.LG....TG....YG....aG....iG....qG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....CH....VH....nH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....+I..*.7I..+.:I..,.XI../.iI..0.nI..1..I..2..I..3..I..4..I..5..J..6.`J..7.pJ..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].L...]ZL...]gL...]NM...]tM...]|M...].M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^.O...^.O...^%O...^9O...^VO...^gO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^)P..*^SP..+^`P..,^qP..-^uP...^.P../^.P..0^.Q..1^.Q..2^.R..3^#R..4^NR..5^`R..8^zR..9^.S..:^.S..;^.S..<^.T..>^BT..?^.T..@^%U..A^0U..B^AU..C^rU..D^.V..E^.W..F^.W..G^.W..K^.X..L^"X..M^,X..N^9X..O^^X..T^.X..U^.X..V^@Y..W^fY..X^wY..Y^.Y..Z^.Z..[^pZ..\^.Z..]^.Z..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.[..i^.[..j^.[..k^.\..l^.\..o^0\..p^Q\..q^p\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):159139
                                                                                                                                            Entropy (8bit):5.873398037642396
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0553C4D65C38A5AFB98A0EE8F420A207
                                                                                                                                            SHA1:C6011AB07BC0B1E036BF564BE6F4D65C24E7D3E4
                                                                                                                                            SHA-256:C2BAD3C397CC41210E1D5D1D04A7185F9287C670E285D30C66235F5807B39FCF
                                                                                                                                            SHA-512:F3B9636A93BA77C1BD00D491710ADB221F570A30D1B5ADC50B8E263165B81A17C062ACA1CB656314140A512CD7E69F583DA781EE4C8929A1305E743361A3B030
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........h.j..E..k..F..l..F..m..F..o.3F..p.@F..q.FF..v.UF..w.bF..y.hF..z.wF..|.}F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F....&G....?G....]G....~G.....G.....G.....G.....G.....G.....G.....G.....G...."H....KH....RH....UH....^H....gH....mH....vH.....H.....H.....H.....H.....H.....I..*. I..+.#I..,.EI../.aI..0.jI..1..I..2..I..3..I..4..I..5..J..6.oJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...];K...]bK...]:L...]@L...]pL...].L...].L...].L...]<N...]QN...]WN...]fN...^{N...^.N...^.N...^.N...^.O...^.O...^)P...^AP...^\P...^bP...^.P...^.P...^.P...^.Q...^.Q...^(Q..%^.Q..&^OQ..'^aQ..)^.Q..*^.Q..+^.R..,^%R..-^+R...^LR../^vR..0^.S..1^.S..2^.T..3^.T..4^VT..5^eT..8^zT..9^.U..:^.U..;^.U..<^.V..>^oV..?^.W..@^~W..A^.W..B^.W..C^.W..D^.X..E^sY..F^.Y..G^LZ..I^sZ..K^.Z..L^.Z..M^.Z..N^.Z..O^.Z..T^>[..U^n[..V^.[..W^.\..X^.\..Y^;\..Z^.\..[^.\..\^W]..]^.]..b^)^..d^/^..e^2^..f^5^..g^Y^..h^w^..i^.^..j^.^..k^.^..l^.^..o^.^..p^*_..q^Y_..r^._..s^._..t^._..v^._..x^.`
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):299517
                                                                                                                                            Entropy (8bit):4.421440980554494
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:33BC5AC34A95379D58F9C42CB21A92E4
                                                                                                                                            SHA1:0F4EF0A9A40E9042F3B744B5B87FCF00C08FD7E1
                                                                                                                                            SHA-256:99C8C57A808C63088D3E7B83DCF7CF80FB2A648D678A7C9473F2B5CC0BEF8152
                                                                                                                                            SHA-512:62DB9B5781B6C218E39BF7D4E47614FAF2EDB496A51E0B4E802047D57639890F13A4B4F84B6326FBDF6218B8991A0456DC5BB1473436CC74AF4E54283BB3BF13
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........../.j.nF..k.}F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}. G....(G....-G....5G....=G....EG....LG....SG....ZG....[G....\G.....G....%H....\H.....H.....H.....H.....H.....I....-I....^I.....I.....I.....J....@J....GJ....JJ....LJ....dJ.....J.....J.....J.....J.....J.....K....%K.....K.....K..*..K..+..L..,. L../.QL..0.oL..1..M..2..M..3.4M..4..M..5..M..6.RN..7..N..>..N..?..N..N.1O..g.MO..i.PO..j.TO..k.YO..l.gO...]lO...].O...]=P...].Q...].Q...]5R...]xR...].R...]%S...]qS...]WV...].V...].V...].V...^.V...^.W...^hW...^.W...^2Y...^.Y...^.Y...^+Z...^JZ...^.Z...^.Z...^.Z...^.[...^D[...^!\...^J\...^u\..%^.\..&^.\..'^.\..)^.]..*^.]..+^.^..,^X^..-^p^...^.^../^?_..0^z`..1^~a..2^.b..3^.b..4^ c..5^Tc..8^.c..9^Ce..:^Tg..;^kg..<^.g..>^Sh..?^.i..@^.j..A^Wk..B^.k..C^.k..D^.o..E^kq..F^.r..G^.s..K^.s..L^.t..M^@t..N^qt..O^.t..T^.u..U^Av..V^fw..W^.w..X^.w..Y^bx..Z^_y..[^?z..\^#{..]^.{..b^.|..c^.}..d^$}..e^6}..f^B}..g^.}..h^.}..i^/~..j^0~..k^h~..l^k~..o^.~..p^....q^m...r^1.
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):134295
                                                                                                                                            Entropy (8bit):6.191082491321746
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:7FF011AE4E5FFD05736F99888AE9A8CB
                                                                                                                                            SHA1:544BF65AB5FE462FAADCDA88E2E5DB0009169123
                                                                                                                                            SHA-256:5BA83651D941CB9F87B961F735D5BFB0E249878255129BE1D8E8D6BA5D903D76
                                                                                                                                            SHA-512:BAA72F1A5561FD67A047309255CA799A55365D6D755324313E86E26AE9F3A8209AF7AF24C1A9BA83FAA441CF49FB843D9AD1FAB4B76354B0800EDFD9A2AE21F7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........o.j..E..k..E..l..F..m..F..o..F..p..F..q..F..r.-F..s.>F..t.GF..y.\F..z.kF..|.qF..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....G.....G....'G....:G....JG....LG....PG....\G....cG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....XH....jH..*.wH..+.zH..,..H../..H..0..H..1..I..2.#I..3./I..4.NI..5.vI..6..I..7..I..>..I..?..I..N..I..g..J..i..J..j..J..k..J..l."J...]'J...]SJ...]}J...].K...].K...]CK...]TK...].K...].K...].L...].L...].L...].L...^.L...^.L...^.L...^.M...^.M...^.M...^.M...^.N...^.N...^/N...^5N...^BN...^ON...^_N...^.N...^.N...^.N..%^.N..&^.N..'^.O..)^NO..*^.O..+^.O..,^.O..-^.O...^.O../^.O..0^tP..1^.P..2^lQ..3^.Q..4^.Q..5^.Q..8^.Q..9^yR..:^tS..;^.S..<^.S..>^.S..?^PT..@^.T..A^.T..B^.T..C^.T..D^.V..E^.V..F^.W..G^aW..K^.W..L^.W..M^.W..N^.W..O^.W..T^<X..U^oX..V^.X..W^.X..X^.Y..Y^5Y..Z^.Y..[^.Y..\^3Z..]^XZ..d^.Z..e^.Z..f^.Z..g^.[..h^,[..i^F[..j^G[..k^Z[..l^][..o^q[..p^.[..q^.[..r^.\..s^.\..t^S\..v^\\..x^p\..y^v\..z^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):146763
                                                                                                                                            Entropy (8bit):5.624470493823786
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:90847DC4F0387C80DD00BAD7B001A879
                                                                                                                                            SHA1:B7543FA3A3185201EACB2CBEB1F6EF667CCA10B1
                                                                                                                                            SHA-256:FB5BB8AA591D3D8D7557FB296317C30DB3C4D5C9F438FE0A43A94B974B9286A1
                                                                                                                                            SHA-512:19ED2F2B9D71F00A81EE93C776EE9B2D4D6283CB5ADB280A30EB8ADB9BE53A2D007D267DD8143FE7EB98AB909DBC88B16BC7E4167717D3F4EEC3B1C7DCEB8B1B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....,H....?H....QH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....-I..*.:I..+.=I..,.[I../..I..0..I..1..I..2..I..3..I..4..I..5.%J..6.tJ..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..K...].K...];K...]OK...].K...].K...]#L...]4L...]DL...].L...].L...].O...])O...]2O...]JO...^]O...^gO...^.O...^.O...^BP...^jP...^rP...^.P...^.P...^.P...^.P...^.P...^.Q...^.Q...^TQ...^^Q...^rQ..%^|Q..&^.Q..'^.Q..)^.Q..*^.R..+^2R..,^CR..-^JR...^gR../^.R..0^.S..1^.S..2^(T..3^BT..4^rT..5^.T..8^.T..9^5U..:^.U..;^.V..<^#V..>^LV..?^.V..@^.W..A^.W..B^.W..C^.X..D^HZ..E^.[..F^.\..G^.\..I^.]..K^!]..L^7]..M^@]..N^S]..O^.]..T^.]..U^.^..V^s^..W^.^..X^.^..Y^._..Z^u_..[^._..\^&`..]^f`..b^1a..d^<a..e^Ba..f^Ga..g^_a..h^sa..i^.a..j^.a..k^.a..l^.a..o^.a..p^.a..q^.b..r^Db
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):145384
                                                                                                                                            Entropy (8bit):5.624257022055004
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:61EE8D708739FB4BB33F37BFFBA745AE
                                                                                                                                            SHA1:7173073DDDD29E4688B922297EEC471AE8B0FDF9
                                                                                                                                            SHA-256:F944E3DBBE9694EF7C111E1A0BF91F5B0229B7C3CA221F54C253276242C281F8
                                                                                                                                            SHA-512:25FDFC2EBBF7D408D9570DA3D55D9722C912B2995DE9E73449B8CDE8C0EBB3C25B38E70F66681CBF39D791F151194C85146D95EF59A7B43E7E64B0169B49E2A7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..G..s..G..t..G..v.0G..w.=G..y.CG..z.RG..|.XG..}.jG....rG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....#H....%H....)H....0H....;H....KH....^H....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....OI..*.\I..+._I..,.}I../..I..0..I..1..I..2..I..3..J..4..J..5.@J..6.{J..7..J..>..J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].K...]/K...].K...].K...].L...].L...]<L...]zL...].L...]eN...]{N...].N...].N...^.N...^.N...^.N...^.O...^.O...^.O...^.O...^.O...^.P...^&P...^/P...^DP...^_P...^.P...^.P...^.P...^.P..%^.P..&^.P..'^.Q..)^NQ..*^xQ..+^.Q..,^.Q..-^.Q...^.Q../^.Q..0^gR..1^.R..2^KS..3^kS..4^.S..5^.S..8^.S..9^QT..:^.U..;^/U..<^RU..>^.U..?^.U..@^.V..A^.V..B^.V..C^.W..D^.Y..E^.Z..F^.Z..G^.[..I^0[..K^6[..L^D[..M^O[..N^\[..O^.[..T^.[..U^.[..V^U\..W^r\..X^.\..Y^.\..Z^.]..[^`]..\^.]..]^.]..b^`^..c^l^..d^v^..e^~^..f^.^..g^.^..h^.^..i^.^..j^.^..k^.^..l^.^..o^._..p^L_..q^m_
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):315496
                                                                                                                                            Entropy (8bit):4.438433180200473
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:6183544A4F554D40A211C8E0376C95AA
                                                                                                                                            SHA1:A9E855BBD03CFEB96DAE4C52E6A577B9F0374184
                                                                                                                                            SHA-256:2B5C12D6628B1835D5658085C04F9DCF0D792DB603A034264E70D86F8D43E044
                                                                                                                                            SHA-512:7C517702F24C92B708DD4EE1D6D5A911213062CFA5AE05C12DA9B2CD4DEC06ED9B218CE88A75AE9A7C9177AF100169F61056B1ECCB9AB3F10811B6E6C99CC86E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j.pF..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}."G....*G..../G....7G....?G....GG....NG....UG....\G....]G....^G.....G.....H....IH.....H.....H.....H.....H.....I.....I....?I.....I.....I.....I....(J..../J....2J....4J....UJ....sJ.....J.....J.....J.....K....0K....NK....)L....TL..*..L..+..L..,..L../..L..0..L..1..M..2..M..3..M..4.+N..5..N..6.%O..7.mO..>..O..?..P..N.5P..g.WP..i.ZP..j.^P..k.cP..l.wP...]|P...].Q...]NQ...]9S...]WS...].S...].S...]%T...].T...].T...].V...]0W...]9W...]ZW...^.W...^.W...^.W...^|X...^.Z...^oZ...^.Z...^.[...^1[...^y[...^.[...^.[...^&\...^M\...^.\...^.]...^A]..%^e]..&^.]..'^.]..)^x^..*^.^..+^._..,^B_..-^i_...^._../^0`..0^ga..1^.b..2^.c..3^.d..4^.d..5^.d..8^.e..9^.f..:^.h..;^.h..<^%i..>^.i..?^.k..@^%l..A^ll..B^.l..C^.m..D^.o..E^.p..F^.q..G^.r..I^.r..K^.s..L^1s..M^Ls..N^.s..O^.s..T^.u..U^.u..V^.v..W^.v..X^7w..Y^.w..Z^.x..[^cy..\^Fz..]^.z..b^e|..d^.|..e^.|..f^.|..g^.|..h^F}..i^.}..j^.}..k^.}..l^.}..o^-~..p^.~..q^.~..r^..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):260776
                                                                                                                                            Entropy (8bit):4.505268866905645
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:80B49D820F83133B9EFB9AC2CA102C83
                                                                                                                                            SHA1:6E2D370C74891BEF70768F051E4BA0483D6B5C1E
                                                                                                                                            SHA-256:DF72EACF4938F4912F5BAE563DBE7E81A758A7E8FFD49F14502F6D0B5DAB6F27
                                                                                                                                            SHA-512:AFD58A2ADA72E96423CA1F9E1869C8E1621C22E72A13B90FEC5FD2DBE662D2D9280E3277018D426196AD63CD74CE7406975BD134F577B6B3E5864DA7F0831936
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........D.j.DF..k.SF..l.^F..n.fF..o.kF..p.xF..q.~F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....G.....G.....G.....G...."G....)G....0G....1G....2G.....G.....G.....G.....H...._H....aH....eH.....H.....H.....H.....H.....I.....I....RI....YI....\I....^I....qI.....I.....I.....I.....I.....I.....J.....J....pJ.....J..*..J..+..J..,..J../.*K..0.7K..1..K..2..K..3..K..4..L..5.TL..6..L..7..L..>.>M..?.QM..N..M..g..M..i..M..j..M..k..M..l..M...].M...].N...]yN...].O...].O...]7P...]dP...].P...].P...].R...].R...].R...].S...^@S...^XS...^.S...^.S...^.T...^QU...^`U...^.U...^.U...^.V...^.V...^FV...^.V...^.V...^2W...^IW...^kW..%^.W..&^.W..'^.W..)^.X..*^.Y..+^/Y..,^mY..-^.Y...^.Y../^3Z..0^;[..1^2\..2^,]..3^Z]..4^.]..5^.]..8^*^..9^._..:^Xa..;^oa..<^.a..>^-b..?^}c..@^od..A^.d..B^.d..C^@e..D^.g..E^.h..F^|i..G^.j..I^fj..K^|j..L^.j..M^.j..N^.j..O^6k..T^.k..U^Rl..V^Hm..W^.m..X^.m..Y^An..Z^-o..[^.o..\^.p..]^*q..b^ur..c^.r..d^.r..e^.r..f^.r..g^.s..h^[s..i^.s..j^.s..k^.s..l^.s..o^.t..p^Xt..q^.t..r^.u
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):125611
                                                                                                                                            Entropy (8bit):5.26463363101804
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0CDA98188CCC97E932408BED970E2CE1
                                                                                                                                            SHA1:91595881665CC51FBC013EC0A1D212DEA9F70CB5
                                                                                                                                            SHA-256:18C1CD2F95F5C029F308C53774F49E4B718BC94B78FC3029F95457BCC58281D7
                                                                                                                                            SHA-512:4CF8A939ADF3B79537051016D52A0E2C3C10135DC2A652B68D5EA7BB338DAC422D3AD814DDA1902C393083DB55168E12822DD51151302D5770FE599C0B395AB4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z..G..|.4G..}.FG....NG....SG....[G....cG....kG....rG....yG.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....1H....EH....WH....pH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.%I..+.(I..,.FI../.WI..0.aI..1..I..2..I..3..I..4..I..5..I..6..J..7.2J..>.NJ..?.VJ..N.kJ..g.tJ..i.wJ..j.{J..k..J..l..J...].J...].J...].J...]\K...]dK...].K...].K...].K...].K...].L...].L...].L...].L...^.L...^.L...^.M...^3M...^.M...^.M...^.M...^.M...^.N...^.N...^%N...^3N...^QN...^^N...^.N...^.N...^.N..%^.N..&^.N..'^.N..)^+O..*^FO..+^RO..,^ZO..-^aO...^zO../^.O..0^.P..1^lP..2^.P..3^.P..4^.Q..5^.Q..8^2Q..9^.Q..:^cR..;^rR..<^.R..>^.R..?^.S..@^tS..A^.S..B^.S..C^.S..D^.T..E^,U..F^.U..G^.U..I^.U..K^.U..L^.V..M^.V..N^.V..O^8V..T^.V..U^.V..V^.V..W^.W..X^.W..Y^KW..Z^.W..[^.W..\^DX..]^fX..b^.X..d^.Y..e^.Y..f^.Y..g^.Y..h^5Y..i^KY..j^LY..k^ZY..l^]Y..o^uY..p^.Y..q^.Y..r^.Z..s^%Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):124135
                                                                                                                                            Entropy (8bit):5.430025230496119
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:00F1A382F8F5E0950CB9BA4A4F3FD478
                                                                                                                                            SHA1:BBA2DE6051BDD9B596F66312F2E2296C370E2D93
                                                                                                                                            SHA-256:E42E748F28E944F9A3A7FAD19E686B856BC60B3E0128DE94E6CD7619A7D24071
                                                                                                                                            SHA-512:2D8F502F51FCF066BF8C420CA2C86FE4EC6274AB0DA5A5266293225910C9A0DFB6D5C529A9FD0DA6FF4952BAC385FCE2885757DE81A4DB2D7F5C10CDDD539C0E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.(G..|..G..}.@G....HG....MG....UG....]G....eG....lG....sG....zG....{G....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....>H....EH....HH....IH....PH....XH....cH....gH....nH....yH.....H.....H.....H.....H..*..H..+..H..,..H../..I..0..I..1.6I..2.BI..3.SI..4.mI..5..I..6..I..7..I..>..I..?..I..N..I..g..J..i..J..j..J..k..J..l..J...]!J...]LJ...]pJ...].K...].K...]=K...]MK...]\K...].K...].K...]@L...]RL...]YL...]bL...^xL...^.L...^.L...^.L...^nM...^.M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^%N...^`N...^hN...^{N..%^.N..&^.N..'^.N..)^.N..*^.O..+^.O..,^)O..-^/O...^DO../^jO..0^.O..1^NP..2^.P..3^.P..4^.P..5^.P..8^.Q..9^oQ..:^.R..;^.R..<^)R..>^UR..?^.R..@^.S..A^/S..B^<S..C^XS..D^FT..E^.T..F^*U..G^oU..I^.U..K^.U..L^.U..M^.U..N^.U..O^.U..T^.V..U^EV..V^.V..W^.V..X^.V..Y^)W..Z^.W..[^.W..\^.X..]^FX..b^.X..d^.X..e^.X..f^.X..g^.Y..h^(Y..i^9Y..j^:Y..k^IY..l^LY..o^eY..p^.Y..q^.Y..r^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):128369
                                                                                                                                            Entropy (8bit):5.355883393524085
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:2D4BBBF2E9459992252D62AB1A152D30
                                                                                                                                            SHA1:78E696C8B30F2B4A113B72A92C0A011AA7D777BE
                                                                                                                                            SHA-256:4D450B5659EA7BB907728E2B8F48D77A43DC18024E2A15E749F5A760D4144571
                                                                                                                                            SHA-512:3325DBCF891A55E06D2D106046D0E0589DAE5E437B4437B929672150735B38DCF39AFCCF0FADB2C43DD1484F3726ECF9B0EE1641BDE7BB31A84B88790E9CAD55
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.#G..y.)G..z.8G..|.>G..}.PG....XG....]G....eG....mG....uG....|G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....)H....=H....PH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.#I..+.&I..,.DI../.UI..0._I..1..I..2..I..3..I..4..I..5..I..6..J..7.7J..>.TJ..?.aJ..N.pJ..g.}J..i..J..j..J..k..J..l..J...].J...].J...].J...]eK...]mK...].K...].K...].K...].K...].K...].L...].L...].L...].L...^.M...^.M...^:M...^[M...^.M...^"N...^*N...^UN...^^N...^xN...^.N...^.N...^.N...^.N...^.N...^.N...^.N..%^.O..&^.O..'^.O..)^ZO..*^xO..+^.O..,^.O..-^.O...^.O../^.O..0^HP..1^.P..2^.Q..3^"Q..4^OQ..5^^Q..8^rQ..9^.Q..:^.R..;^.R..<^.R..>^.R..?^`S..@^.S..A^.S..B^.S..C^.S..D^.U..E^.U..F^.V..G^KV..I^nV..K^wV..L^.V..M^.V..N^.V..O^.V..T^.W..U^:W..V^.W..W^.W..X^.W..Y^.X..Z^lX..[^.X..\^.X..]^(Y..b^.Y..c^.Y..d^.Y..e^.Y..f^.Y..g^.Y..h^.Z..i^.Z..j^.Z..k^&Z..l^)Z..o^GZ..p^qZ..q^.Z
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):139797
                                                                                                                                            Entropy (8bit):5.7397990834880295
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:999ED3F4123A1479D43AB2DC9028EDE9
                                                                                                                                            SHA1:346A3C515D01929A4FE3B33C42A3AAD5FE731843
                                                                                                                                            SHA-256:4174B220824334D04BAD161309D342A647433FAE7C353432E34EAF49EC8787CB
                                                                                                                                            SHA-512:ABFB66F0826E88AD2E1C5850C14AD03A9DAF96239E1B675C7442659B9851F202F73B4BA98FF494719683E5C4EEA5CE8756533AF609218E83A47D61730F28E9A6
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.)G..y./G..z.>G..|.DG..}.VG....^G....cG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H.....H....3H....AH....PH....fH....}H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*.2I..+.5I..,.SI../.|I..0..I..1..I..2..I..3..I..4..I..5..J..6.CJ..7.\J..>.uJ..?.~J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].K...].L...]=L...].M...].M...].M...].M...^.N...^.N...^0N...^eN...^.N...^.O...^.O...^FO...^UO...^{O...^.O...^.O...^.O...^.O...^.O...^.P..%^.P..&^ P..'^-P..)^yP..*^.P..+^.P..,^.P..-^.P...^.P../^.Q..0^.Q..1^.Q..2^bR..3^.R..4^.R..5^.R..8^.R..9^VS..:^.T..;^.T..<^(T..>^`T..?^.T..@^.U..A^.U..B^.U..C^.U..D^.W..E^.X..F^?Y..G^xY..I^.Y..K^.Y..L^.Y..M^.Y..N^.Y..O^.Y..T^3Z..U^WZ..V^.Z..W^.Z..X^.Z..Y^.[..Z^e[..[^.[..\^.[..]^"\..b^.\..c^.\..d^.\..e^.\..f^.\..g^.\..h^.\..i^.]..j^.]..k^%]..l^(]..o^=]..p^e]..q^.]..r^.]
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133496
                                                                                                                                            Entropy (8bit):5.415308981100393
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:31556D02BA0EE812EBDA678E3B70B1F7
                                                                                                                                            SHA1:A2468245936DCE8B2944A66C7562EF4745F64FF7
                                                                                                                                            SHA-256:9D93FDB7F9D0D7833EBEF8EA7016F952301075E714A4918C6A3D5338FEC08FFE
                                                                                                                                            SHA-512:3B6EF3AD2D0115E9694A879E127ECF067D8DF03F0875EBED4427BC674C0C9CC0DEB591FEDA9DF120062C3A59D65FE952727B2A59F352A096887449A0745C8FE5
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.%G..y.+G..z.:G..|.@G..}.RG....ZG...._G....gG....oG....wG....~G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....&H....0H....BH....SH....iH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I.....I..*.)I..+.,I..,.JI../.[I..0.dI..1..I..2..I..3..I..4..I..5..I..6.$J..7.8J..>.PJ..?.[J..N.pJ..g.|J..i..J..j..J..k..J..l..J...].J...].J...].J...]gK...]oK...].K...].K...].K...].K...].K...]UM...]mM...]uM...]{M...^.M...^.M...^.M...^.M...^LN...^rN...^yN...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^9O...^=O...^SO..%^YO..&^hO..'^vO..)^.O..*^.O..+^.O..,^.O..-^.P...^'P../^VP..0^.P..1^4Q..2^.Q..3^.Q..4^.Q..5^.Q..8^.R..9^.R..:^.S..;^.S..<^.S..>^.S..?^ST..@^.T..A^.T..B^.T..C^.U..D^.V..E^]W..F^.X..G^ZX..I^.X..K^.X..L^.X..M^.X..N^.X..O^.X..T^.Y..U^CY..V^.Y..W^.Y..X^.Y..Y^.Y..Z^`Z..[^.Z..\^.[..]^<[..b^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^&\..j^'\..k^8\..l^;\..o^]\..p^.\..q^.\..r^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):133827
                                                                                                                                            Entropy (8bit):5.406788102503695
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B7456478AB25DA7A037689ECF9FC39B1
                                                                                                                                            SHA1:6CACB9E84AF6ADB490B92CAA6A24DEF7114266AD
                                                                                                                                            SHA-256:F07D58C568707C6DE882A19E260C9F97751BF750237FC0BF3556BA95995F5442
                                                                                                                                            SHA-512:9F71AC8F21C64E4B8C93ECDA70C47CC697395E0E67D8B4A8AB4D2C1F95F4D5644AEC87DF2E058526534BD4D65130D600443D3BAAF6AD32BCCE5BB994C506159B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v..G..w.+G..y.1G..z.@G..|.FG..}.XG....`G....eG....mG....uG....}G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H...."H....,H....@H....TH....kH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*./I..+.2I..,.PI../.gI..0.rI..1..I..2..I..3..I..4..I..5..J..6.MJ..7.aJ..>.wJ..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].K...](L...]8L...]EM...]]M...]gM...]mM...^}M...^.M...^.M...^.M...^iN...^.N...^.N...^.N...^.N...^.N...^.N...^.N...^.O...^,O...^cO...^qO...^.O..%^.O..&^.O..'^.O..)^.P..*^+P..+^;P..,^IP..-^SP...^vP../^.P..0^.Q..1^.Q..2^.R..3^.R..4^IR..5^WR..8^sR..9^.S..:^.S..;^.T..<^!T..>^bT..?^.T..@^DU..A^`U..B^xU..C^.U..D^.V..E^5W..F^.W..G^.W..I^%X..K^-X..L^9X..M^BX..N^QX..O^.X..T^.X..U^.Y..V^tY..W^.Y..X^.Y..Y^.Y..Z^OZ..[^.Z..\^.Z..]^)[..b^.[..c^.[..d^.[..e^.[..f^.[..g^.[..h^.\..i^.\..j^.\..k^'\..l^*\..o^@\..p^p\..q^.\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):136702
                                                                                                                                            Entropy (8bit):5.445627159958296
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B665411D1B5570903F8E4C2501F977D5
                                                                                                                                            SHA1:CB8D98CF3E053C278F8B93D734FD2B1A42B6F322
                                                                                                                                            SHA-256:8DA674ABE460D1E2824A13338D29344BAE2F092FD94082D71EE91389F8822D69
                                                                                                                                            SHA-512:BDCB8E626DB816C1DB5C60489064D4BA4720381889A36E3D80D00E9988332EC6529107D9B3EF062B9BCC2AFDFE75EC55C8F08BA06D908B07D772D2547C7B4CF1
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........).j.zF..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..G..z..G..|..G..}.,G....4G....9G....AG....IG....QG....XG...._G....fG....gG....hG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....,H....GH....eH....lH....oH....pH....|H.....H.....H.....H.....H.....H.....H.....H.....H.....I..*.$I..+.'I..,.EI../._I..0.pI..1..I..2..I..3..I..4..I..5..I..6.5J..7.JJ..>.aJ..?.iJ..N.xJ..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...]mK...]tK...].K...].K...].K...].L...]"L...]eM...]zM...].M...].M...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.N...^.N...^%O...^.O...^@O...^SO...^dO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^ P..*^AP..+^UP..,^kP..-^sP...^.P../^.P..0^/Q..1^.Q..2^.Q..3^.R..4^<R..5^LR..8^cR..9^.R..:^.S..;^.S..<^.S..>^.S..?^[T..@^.T..A^.T..B^.U..C^'U..D^.V..E^CW..F^.W..G^.X..K^6X..L^DX..M^LX..N^[X..O^.X..T^.X..U^.X..V^aY..W^|Y..X^.Y..Y^.Y..Z^.Z..[^\Z..\^.Z..]^.Z..b^`[..d^k[..e^p[..f^r[..g^.[..h^.[..i^.[..j^.[..k^.[..l^.[..o^.[..p^.\..q^(\..r^a\..s^y\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):213507
                                                                                                                                            Entropy (8bit):5.024482756621217
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:848ED63D29215F8B7D002F8D731DB13C
                                                                                                                                            SHA1:1A33D0ABFC5F4237E63440AB04A698AC4F230EC6
                                                                                                                                            SHA-256:CF4D6FA2C4A8F828FB11D464F504DDBBFF5ABAB9CC78CBA326BB8EAFCFCDF812
                                                                                                                                            SHA-512:2A1F75D2AAC4075DD43F816FA0B5D7949B1591E53BC711A69DD5540A3A6AD502648F7C6681DB7632B869553FF24EA43AB7CB4CE4B646C022FB88F0ACE97A3C7F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........J.j.8F..k.GF..l.RF..n.ZF..o._F..p.lF..q.rF..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....G.....G.....G.....G....$G....%G....&G....~G.....G.....G.....G.....G.....G.....G.....H...."H....4H....SH....vH.....H.....H.....H.....H.....H.....H.....H.....H.....I.... I....8I....BI....NI.....I.....I..*..I..+..I..,..J../.%J..0.6J..1..J..2..J..3..J..4..J..5.'K..6..K..7..K..>..K..?..K..N..L..g.'L..i.*L..j..L..k.7L..l.CL...]HL...].L...].L...].M...].M...].N...]:N...]^N...].N...].N...].R...].R...].S...].S...^-S...^?S...^iS...^.S...^.T...^.T...^.T...^.U...^OU...^.U...^.U...^.U...^.U...^.U...^\V...^yV...^.V..%^.V..&^.V..'^.V..)^OW..*^.W..+^.W..-^.W...^.W../^%X..0^.Y..1^.Y..2^.Z..3^.Z..4^.Z..5^.Z..8^D[..9^0\..:^p]..;^.]..<^.]..>^.]..?^.^..@^"`..A^/`..B^I`..C^.`..D^.d..E^.e..F^]g..G^.g..K^.g..L^.h..M^0h..N^Ih..O^.h..T^.i..U^Ui..V^.i..W^%j..X^Sj..Y^.j..Z^*k..[^.k..\^$l..]^ll..b^Am..d^Wm..e^am..f^gm..g^.m..h^.m..i^.m..j^.m..k^.n..l^!n..o^]n..p^.n..q^.n..r^,o..s^Ro..t^~o
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):141995
                                                                                                                                            Entropy (8bit):5.773757591863307
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0B9599388DEC973FFEC68A5738A848F4
                                                                                                                                            SHA1:0A0AAF4F9618CF867A1BF1E5BC6B8B21B46C4870
                                                                                                                                            SHA-256:E7038A23BE62E4A476960B935A6C528AAEFB781B28FDB7E24B3D830B5C02F10E
                                                                                                                                            SHA-512:5EE7AEAAF1BE25DDC86694A16CA595872F2A9DCF1E48D0189D3A1EEF425629ABDC814FF32A8B288B468AB4F263953618C4363D033EF7AEC2BAE0072129DD1F9A
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v. G..w.-G..y.3G..z.BG..|.HG..}.ZG....bG....gG....oG....wG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H.....H....$H....8H....FH....WH....gH....zH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....'I..*.1I..+.4I..,.RI../.cI..0.mI..1..I..2..I..3..I..4..I..5..I..6.6J..7.KJ..>.bJ..?.lJ..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].L...]EL...]UL...].N...].N...].N...]%N...^=N...^GN...^iN...^.N...^&O...^RO...^WO...^.O...^.O...^.O...^.O...^.O...^.O...^.P...^BP...^OP...^bP..%^jP..&^yP..'^.P..)^.P..*^.P..+^.Q..,^.Q..-^ Q...^7Q../^fQ..0^.Q..1^LR..2^.R..3^.R..4^.R..5^.S..8^%S..9^.S..:^pT..;^.T..<^.T..>^.T..?^OU..@^.U..A^.V..B^$V..C^EV..D^.X..E^.Y..F^.Y..G^>Z..I^_Z..K^gZ..L^vZ..M^.Z..N^.Z..O^.Z..T^"[..U^J[..V^.[..W^.[..X^.[..Y^.\..Z^h\..[^.\..\^.\..]^%]..b^.]..c^.]..d^.]..e^.]..f^.]..g^.]..h^.]..i^.^..j^.^..k^,^..l^/^..o^K^..p^.^..q^.^..r^.^
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):135567
                                                                                                                                            Entropy (8bit):5.468430155460571
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:3BF6C4AA2129B4B535637AA6727FB1E9
                                                                                                                                            SHA1:569BCFAB7176BB9833A02B5853BBBEB3165538CC
                                                                                                                                            SHA-256:CBFF2DBB38D4D95FE7C811E0ABDB0B92AAD621E5C2C1EEDA3C394DCE5CF1D34F
                                                                                                                                            SHA-512:779CED23ADC89AF08F43531056B7195D253B7EA021439F73F0C9F9B49969153A2044E90ACC0BDA3C14D3B3E68F772F5CF8611F954B5B9CB0370D252A484CA36E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........!.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z.$G..|.*G..}.<G....DG....IG....QG....YG....aG....hG....oG....vG....wG....xG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....-H....BH....YH....`H....cH....dH....oH....wH....}H.....H.....H.....H.....H.....H.....H.....H..*..H..+..H..,..I../.?I..0.II..1.zI..2..I..3..I..4..I..5..I..6..J..7..J..>.4J..?.>J..N.LJ..g.XJ..i.[J..j._J..k.fJ..l.nJ...]sJ...].J...].J...]cK...]iK...].K...].K...].K...].K...].K...].M...].M...].M...].N...^2N...^<N...^bN...^.N...^'O...^UO...^\O...^.O...^.O...^.O...^.O...^.O...^.O...^&P...^/P...^KP..%^QP..&^jP..'^xP..)^.P..*^.P..+^.P..,^.Q..-^.Q...^/Q../^SQ..0^.Q..1^/R..2^.R..3^.R..4^.R..5^.R..8^.R..9^gS..:^.T..;^.T..<^)T..>^\T..?^.T..@^.U..A^.U..B^.U..C^.U..D^.X..E^.Y..F^.Z..G^.Z..I^.Z..K^.Z..L^.[..M^.[..N^#[..O^C[..T^.[..U^.[..V^.\..W^.\..X^'\..Y^a\..Z^.\..[^.\..\^A]..]^a]..b^.]..c^.]..d^.]..e^.]..f^.]..g^.^..h^&^..i^8^..j^9^..k^K^..l^N^..o^n^..p^.^..q^.^..r^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):202805
                                                                                                                                            Entropy (8bit):4.966841321768272
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9F9570670D844A1B14B256A7584665E8
                                                                                                                                            SHA1:5B5CF46415662CC1CE4D93B876F4C45389AEDFC2
                                                                                                                                            SHA-256:ABCEE52DEB7382D84DE334C3228711A62A7D21D9A2CE506385805EEA0ED716F4
                                                                                                                                            SHA-512:D38FCA2D639E32F5EF90DFAAC04AEF0CCFBCC409619ACEC6535B5401502B7141F6EB24F574DB97A7ABC550B8E35E93CBC62A4A0F7494C56537FB670F19E02F8E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..G..t..G..v.$G..w.1G..y.7G..z.FG..|.LG..}.^G....fG....kG....sG....{G.....G.....G.....G.....G.....G.....G.....G.....H....6H....[H.....H.....H.....H.....H.....H.....H.....H.....I....8I....VI....]I....`I....aI....kI....wI.....I.....I.....I.....I.....I.....I....1J....dJ..*.yJ..+.|J..,..J../..J..0..J..1.*K..2.AK..3.ZK..4..K..5..K..6.3L..7.[L..>..L..?..L..N..L..g..L..i..L..j..L..k..L..l..L...].L...]>M...].M...].N...].N...].N...].N...].O...]wO...].O...]7R...]sR...].R...].R...^.R...^.R...^.R...^MS...^PT...^.T...^.T...^.T...^.U...^oU...^.U...^.U...^.U...^.U...^QV...^aV...^.V..%^.V..&^.V..'^.V..)^_W..*^.W..+^.W..,^.W..-^.X...^7X../^{X..0^9Y..1^.Y..2^}Z..3^.Z..4^.Z..5^.Z..8^.[..9^.[..:^.\..;^.\..<^.]..>^v]..?^L^..@^]_..A^s_..B^._..C^._..D^.b..E^,d..F^.e..G^.f..I^<f..K^Hf..L^ef..M^uf..N^.f..O^.f..T^4g..U^.g..V^&h..W^Oh..X^th..Y^.h..Z^Li..[^.i..\^Jj..]^xj..b^Mk..c^[k..d^mk..e^wk..f^.k..g^.k..h^.k..i^.k..j^.k..k^.l..l^.l..o^Il..p^.l..q^.l
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):124359
                                                                                                                                            Entropy (8bit):5.508086107251322
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:C0EB9DC359EAD97302591D09A4D80C81
                                                                                                                                            SHA1:5569C326861E80DD05AA49A74D77815364915AF1
                                                                                                                                            SHA-256:B34E855F518A2041E4BBD7B5C269E35E7DFAA431FDD876FC0AAC38B887E65AFF
                                                                                                                                            SHA-512:B488831AA6219A246D0CDC370DC7B95FC07754702447964737EB53B9D5F64092E8873032BC40E8AF9270388BB1B655B4F06D6DE304B85B32FDD297959534D06D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........#.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z. G..|.&G..}.8G....@G....EG....MG....UG....]G....dG....kG....rG....sG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....1H....BH....IH....LH....MH....UH....]H....hH....nH....vH.....H.....H.....H.....H.....H..*..H..+..H..,..H../..I..0..I..1.HI..2.RI..3.]I..4..I..5..I..6..I..7..I..>..I..?..I..N..J..g..J..i..J..j..J..k.$J..l.)J...].J...]]J...].J...].K...].K...]@K...]PK...]bK...].K...].K...]uL...].L...].L...].L...^.L...^.L...^.L...^"M...^.M...^.M...^.M...^.M...^.M...^.N...^.N...^#N...^;N...^IN...^.N...^.N...^.N..%^.N..&^.N..'^.N..)^.O..*^0O..+^BO..,^NO..-^SO...^qO../^.O..0^.P..1^eP..2^.P..3^.P..4^.Q..5^)Q..8^CQ..9^.Q..:^lR..;^~R..<^.R..>^.R..?^2S..@^.S..A^.S..B^.S..C^.S..D^.T..E^&U..F^.U..G^.U..I^.V..K^.V..L^.V..M^$V..N^0V..O^WV..T^.V..U^.V..V^%W..W^;W..X^KW..Y^qW..Z^.W..[^.X..\^RX..]^yX..b^.X..c^.X..d^.Y..e^.Y..f^.Y..g^'Y..h^=Y..i^XY..j^YY..k^iY..l^lY..o^.Y..p^.Y..q^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):128671
                                                                                                                                            Entropy (8bit):5.3456626209237825
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:9CD6230B42F2F99D9580F7EF84508F9C
                                                                                                                                            SHA1:4F9D82E3C39F2B0D3B0CC32733254AAF38E811B2
                                                                                                                                            SHA-256:FE18B3E9E275D7330706DD19F4AF603A8AD899138374BFCBA8E2C6764F94C190
                                                                                                                                            SHA-512:46A07A61EE7A70B4D261C16D2FEF6F0E8A35CAF371E33E05CA1DC3BDC7F3D304C1DBDB34DDBA7B6BC573A6A58E170D9250CB1B6A4AD8AE6E255704416C022607
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........".j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z."G..|.(G..}.:G....BG....GG....OG....WG...._G....fG....mG....tG....uG....vG.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H....(H....;H....OH....eH....lH....oH....pH....wH....|H.....H.....H.....H.....H.....H.....H.....H.....H..*..I..+..I..,.+I../.KI..0.NI..1..I..2..I..3..I..4..I..5..I..6..J..7.,J..>.HJ..?.QJ..N.lJ..g.xJ..i.{J..j..J..k..J..l..J...].J...].J...].J...].K...].K...].K...].K...].L...]*L...]LM...]_M...]cM...]qM...^.M...^.M...^.M...^.M...^aN...^.N...^.N...^.N...^.N...^.O...^.O...^#O...^FO...^UO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^-P..*^_P..+^pP..,^|P..-^.P...^.P../^.P..0^2Q..1^.Q..2^$R..3^;R..4^kR..5^zR..8^.R..9^5S..:^.S..;^.T..<^.T..>^QT..?^.T..@^$U..A^5U..B^HU..C^lU..D^zV..E^.W..F^gW..G^.W..I^.W..K^.W..L^.W..M^.W..N^.W..O^.X..T^cX..U^.X..V^.X..W^.Y..X^.Y..Y^IY..Z^.Y..[^.Y..\^>Z..]^aZ..b^.Z..d^.Z..e^.Z..f^.[..g^.[..h^/[..i^B[..j^C[..k^\[..l^_[..o^|[..p^.[..q^.[..r^.\..s^&\
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):313562
                                                                                                                                            Entropy (8bit):4.239267478834166
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:AFBB6F8A11ECB993E73A530E2682848C
                                                                                                                                            SHA1:950D0FA6CD4338084B5FFA72EB49F79B07830466
                                                                                                                                            SHA-256:3D16A99568173AD5760BF195B047C8850E39EC8D308A94F6C81CF7BA733F6F5F
                                                                                                                                            SHA-512:74EE545CDCE2E263BC33279325E0C72336575B36DE7DFE145897964CDE7EB57429CDFF082EC5A06E7F46F75E9BC6D5C4CC3DCA395745E990092CDAC27E56F129
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........<.j.TF..k.cF..l.nF..n.vF..o.{F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..F..|..F..}..G.....G.....G.....G....#G....+G....2G....9G....@G....AG....BG.....G.....H....8H....xH.....H.....H.....H.....H.....I....;I....{I.....I.....I....'J.....J....1J....2J....PJ....nJ.....J.....J.....J.....J.....J.... K.....K.....K..*..L..+..L..,.5L../.lL..0..L..1..M..2.JM..3.rM..4..M..5.QN..6..N..7.+O..>..O..?..O..N..O..g..O..i..O..j..O..k..O..l..P...].P...].P...].P...].R...].R...].R...]7S...].S...]ZT...].T...]9W...]mW...].W...].W...^.W...^.W...^SX...^.X...^.Z...^.Z...^.Z...^.Z...^.[...^c[...^u[...^.[...^.[...^.\...^.\...^.\...^.\..%^.\..&^1]..'^V]..)^$^..*^y^..+^.^..,^.^..-^._...^k_../^._..0^.a..1^.b..2^.c..3^.d..4^.d..5^.d..8^1e..9^.f..:^.h..;^.h..<^#i..>^.i..?^'k..@^)l..A^.l..B^.l..C^Lm..D^.o..E^.q..F^!r..G^!s..I^ws..K^.s..L^.s..M^.s..N^.t..O^qt..T^Eu..U^.u..V^.v..W^.v..X^Rw..Y^.w..Z^.y..[^.y..\^.z..]^,{..b^.|..c^.|..d^.}..e^.}..f^)}..g^i}..h^.}..i^.}..j^.}..k^.~..l^.~..o^.~..p^.~..q^<.
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):292506
                                                                                                                                            Entropy (8bit):4.456018055206471
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:5F441DE15CED6697594E8BC066297348
                                                                                                                                            SHA1:33C64379EC7297404E8AA4A4BA5A7155CD69DC90
                                                                                                                                            SHA-256:4AB6FBF03177BD7AD0908318D5AFFD0CAD142EC5E9ED560043E6B76E590BA995
                                                                                                                                            SHA-512:DAC2982DD5E9337FC3443A87D5DCBBFF46F0FEFDF9E163624BBA1ACD1528F543C84E2A088A83A749543E7B764607C16F1AB1C6C4F9504EFF48180A30681570F3
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........".j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..G..w..G..y..G..z."G..|.(G..}.:G....BG....GG....OG....WG...._G....fG....mG....tG....uG....vG.....G....-H....aH.....H.....H.....H.....H.....I....<I....mI.....I.....I.....I.....J....!J....$J....&J....MJ....tJ.....J.....J.....J.....J.....K.....K.....K.....K..*. L..+.#L..,.AL../.xL..0..L..1.-M..2.PM..3.yM..4..M..5..N..6..N..7..N..>.#O..?.6O..N.sO..g..O..i..O..j..O..k..O..l..O...].O...]0P...].P...]=R...]XR...].R...].R...]/S...].S...].T...].U...].V...].V...](V...^oV...^.V...^.V...^KW...^.X...^.Y...^$Y...^.Y...^.Y...^6Z...^TZ...^.Z...^.Z...^.[...^.[...^.[...^!\..%^@\..&^|\..'^.\..)^s]..*^.]..+^.^..,^G^..-^e^...^.^../^._..0^.`..1^:a..2^cb..3^.b..4^.b..5^.c..8^mc..9^$e..:^%g..;^<g..<^.g..>^.h..?^fi..@^@j..A^|j..B^.j..C^.k..D^Qm..E^<n..F^.o..G^.o..I^Hp..K^jp..L^.p..M^.p..N^.p..O^Pq..T^'r..U^.r..V^.s..W^.s..X^?t..Y^.t..Z^.u..[^Gv..\^.w..]^gw..b^.x..c^.x..d^.x..e^.x..f^.x..g^Ly..h^.y..i^.y..j^.y..k^)z..l^,z..o^.z..p^.z..q^-{
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):246816
                                                                                                                                            Entropy (8bit):4.526207320870026
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F0A3CE8609D1CEA58D4D0DFC47D433F9
                                                                                                                                            SHA1:9F0497E31AC881960C2B9CE3F75FAC98D6EE300B
                                                                                                                                            SHA-256:31F31B2985C2AB430D373DD3D79821DB0674EDEE163B4AE74DC362051CCC1491
                                                                                                                                            SHA-512:0A722FE6373F0F64A844A8BD79CFF66707E158A908292DB8F5EE883E4732FC55864B06554988836A07039BEFC4020CB837883851DA0455F070BCB63DF390D919
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........b.j..F..k..F..l..F..o.%F..p.2F..q.8F..r.GF..s.XF..t.aF..v.vF..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F....GG....kG.....G.....G.....H....0H....4H....FH....^H.....H.....H.....H.....H.....I.....I.....I....5I....VI....hI....qI.....I.....I.....I.....I....BJ....wJ..*..J..+..J..,..J../..J..0..J..1.sK..2..K..3..K..4..K..5.>L..6..L..7..L..>."M..?.SM..N.kM..g.~M..i..M..j..M..k..M..l..M...].M...].N...]HN...]]O...]oO...].O...].O...]SP...].P...]cR...].R...].R...].R...^.S...^ S...^kS...^.S...^.T...^.U...^.U...^.U...^.U...^.U...^.U...^.V...^IV...^jV...^.V...^.W...^lW..%^~W..&^.W..'^.W..)^aX..*^.X..+^.X..,^.X..-^.Y...^DY../^.Y..0^.Z..1^.[..2^.\..3^.]..4^Y]..5^w]..8^.]..9^.^..:^.`..;^.`..<^.`..>^Qa..?^&b..@^.b..A^.c..B^:c..C^.c..D^.f..E^.f..F^.g..G^Ph..I^.h..K^.h..L^.h..M^.h..N^.h..O^<i..T^.i..U^.j..V^.k..W^-k..X^Kk..Y^.k..Z^Xl..[^.m..\^.m..]^.m..b^.o..d^,o..e^;o..f^Ao..g^qo..h^.o..i^.o..j^.o..k^.p..l^.p..o^Ap..p^pp..q^.p..r^.q..s^)q..t^tq
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):131303
                                                                                                                                            Entropy (8bit):5.614477997540201
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:FE23B2095B245AE359C449CF3AE2D4C4
                                                                                                                                            SHA1:56AF0705886551389DEDB9BA1D9BECC682321977
                                                                                                                                            SHA-256:48B76D081B4398C7AF10BE207751EF3BF67720700C35B17196A4AA0C94526208
                                                                                                                                            SHA-512:94B81F5469620BB7545F3CCDA35845861E92FF7D29351A7F562AC861F718454D3D8DFF324CFC904E484F5551D952BC338F24E284F585A714FFFFF5F3A5445F64
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..G..v..G..w.'G..y.-G..z.<G..|.BG..}.TG....\G....aG....iG....qG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....H....(H....*H.....H....5H....?H....OH...._H....qH.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....H.....I....1I..*.7I..+.:I..,.XI../.oI..0.xI..1..I..2..I..3..I..4..I..5..J..6.<J..7.YJ..>.~J..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].K...].K...].L...]OL...]VL...]KM...]dM...]kM...]qM...^.M...^.M...^.M...^.M...^.N...^.N...^.N...^.O...^.O...^)O...^1O...^<O...^VO...^gO...^.O...^.O...^.O..%^.O..&^.O..'^.O..)^=P..*^cP..+^rP..,^.P..-^.P...^.P../^.P..0^=Q..2^.Q..3^.Q..4^.Q..5^.Q..8^.R..9^.R..:^aS..;^rS..<^.S..>^.S..?^9T..@^.T..A^.T..B^.T..C^.T..D^ V..E^.V..F^.V..G^.W..I^MW..K^SW..L^dW..M^mW..N^{W..O^.W..T^.W..U^.X..V^rX..W^.X..X^.X..Y^.X..Z^DY..[^.Y..\^.Y..]^.Z..b^.Z..c^.Z..d^.Z..e^.Z..f^.Z..g^.Z..h^.Z..i^.Z..j^.Z..k^.Z..l^.[..o^#[..p^N[..q^k[..r^.[
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):216199
                                                                                                                                            Entropy (8bit):5.057813342706528
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:6027526062E6F51A7C99FEEBC9AE1947
                                                                                                                                            SHA1:10D7346A8D6A4DADB48BF7720303EF39F76A564A
                                                                                                                                            SHA-256:5DDF9212CBC6696941547B2E57B02092517BFF6E70529F2EE14D0F593610E14F
                                                                                                                                            SHA-512:52178A648747F3247E32183CDB36ECC9A6314B2BEFA91CAE28D5110C479F5D1FF59AD2C802A75288C17650DE5A2EBCF369E04E760259015FF855FF8299DD9F3D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........%.j..F..k..F..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..G..y..G..z..G..|."G..}.4G....<G....AG....IG....QG....YG....`G....gG....nG....oG....pG.....G.....G.....H....6H....xH....zH....~H.....H.....H.....H.....H.....I....'I....II....PI....SI....TI....dI....vI.....I.....I.....I.....I.....I.....I....,J....\J..*.mJ..+.pJ..,..J../..J..0..J..1.EK..2.^K..3.|K..4..K..5..K..6.<L..7._L..>..L..?..L..N..L..g..L..i..L..j..L..k..L..l..L...].L...]?M...]nM...].N...].N...].N...].O...];O...].O...].O...];S...]_S...]mS...]{S...^.S...^.S...^.S...^4T...^1U...^.U...^.U...^.U...^.U...^"V...^6V...^UV...^sV...^.V...^.V...^.W...^ W..%^0W..&^NW..'^kW..)^.W..*^9X..+^XX..,^yX..-^.X../^.X..0^]Y..1^.Z..2^.Z..3^.[..4^`[..5^.[..8^.[..9^.\..:^.]..;^.]..<^.^..>^s^..?^C_..@^.`..A^.`..B^.a..C^Ia..D^re..E^rg..F^.h..G^Ii..I^wi..K^.i..L^.i..M^.i..N^.i..O^"j..T^.j..U^.j..V^.k..W^.k..X^.k..Y^Hl..Z^.l..[^fm..\^.m..]^1n..b^(o..d^>o..e^Jo..f^Po..g^.o..h^.o..i^.o..j^.o..k^.o..l^.o..o^%p..p^np..q^.p..r^'q..s^Sq
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):155363
                                                                                                                                            Entropy (8bit):5.800734141236524
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:8D1DE53FF78406C42FE554ACC82B5983
                                                                                                                                            SHA1:1B80F071914C9A2F071355973DA7FF3D9508298B
                                                                                                                                            SHA-256:314FF8E069D132D43566143FFE0F5CEBC990A015AC32ED550AC687A4FF78D56F
                                                                                                                                            SHA-512:D027A534F8DDAC3C953D81BA635A8A3FE452E7295FB2AA7D8B9D5A718FFF7CD619323E3914DD6A17EACECB0C6D6F5129C9E793B2925F65DABEC83B9389DB295D
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........2.j.hF..k.wF..l..F..n..F..o..F..p..F..q..F..r..F..s..F..t..F..v..F..w..F..y..F..z..G..|..G..}..G...."G....'G..../G....7G....?G....FG....MG....TG....UG....VG....yG.....G.....G.....G.....G.....G.....G.....G.....G.....H....%H....CH....SH....kH....rH....uH....vH.....H.....H.....H.....H.....H.....H.....H.....H.....I....#I..*..I..+.1I..,.OI../.kI..0.xI..1..I..2..I..3..I..4..I..5..I..6./J..7.LJ..>.wJ..?..J..N..J..g..J..i..J..j..J..k..J..l..J...].J...].J...].K...].K...].K...].L...]3L...]uL...].L...].M...].M...].M...].M...^.N...^!N...^ON...^.N...^2O...^rO...^zO...^.O...^.O...^.P...^.P...^$P...^FP...^VP...^.P...^.P...^.P..%^.P..&^.P..'^.Q..)^lQ..*^.Q..+^.Q..,^.Q..-^.Q...^.Q../^!R..0^.R..1^.S..2^.S..3^.S..4^.S..5^.T..8^!T..9^.T..:^.U..;^.U..<^.U..>^/V..?^.V..@^.W..A^.W..B^?W..C^aW..D^.X..E^-Y..F^.Y..G^.Y..I^.Z..K^.Z..L^&Z..M^9Z..N^CZ..O^mZ..T^.Z..U^.Z..V^h[..W^y[..X^.[..Y^.[..Z^E\..[^.\..\^.]..]^1]..b^.^..c^&^..d^/^..e^5^..f^9^..g^S^..h^~^..i^.^..j^.^..k^.^..l^.^..o^.^..p^._..q^#_..r^._
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):114748
                                                                                                                                            Entropy (8bit):6.7174096339004095
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B2E2087F9C688DC3EC45A55742BEDB6A
                                                                                                                                            SHA1:8EFD0726B46FC67CDA9FDC9989C707C23C7B031C
                                                                                                                                            SHA-256:2B255293F6C85ABB09162C825AEA120C3E695156EB952D26D1E5F505BA324B37
                                                                                                                                            SHA-512:2382B2B4D56831BD25D5A3535936D8A1039E00A287BD5AF05628C1A6FC54715FC8AD68AD3F207D6E073A588A66D5FA181E124125E7D1F00A5DE54ED658E5C33E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........b.j..F..k..F..l..F..m.&F..o.,F..p.1F..q.7F..r.FF..s.WF..t.`F..v.uF..w..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....F.....G.... G....,G....>G....PG....RG....VG....\G....hG....tG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H....1H....EH..*.NH..+.QH..,.~H../..H..0..H..1..H..2..H..3..H..4..H..5..I..6.UI..7.jI..>..I..?..I..N..I..g..I..i..I..j..I..k..I..l..I...].I...].I...].J...]yJ...].J...].J...].J...].J...].J...].K...].K...].K...].K...^.K...^.K...^.L...^@L...^.L...^.L...^.L...^.L...^.M...^#M...^)M...^5M...^PM...^bM...^.M...^.M...^.M..%^.M..&^.M..'^.M..)^-N..*^\N..+^kN..,^wN..-^}N...^.N../^.N..0^-O..1^.O..2^9P..3^HP..4^kP..5^wP..8^.P..9^.Q..:^.Q..;^.Q..<^.Q..>^.R..?^tR..@^.R..A^.R..B^.S..C^.S..D^.S..E^^T..F^.T..G^.T..I^.U..K^.U..L^.U..M^.U..N^%U..O^[U..T^.U..U^.U..V^.V..W^EV..X^ZV..Y^.V..Z^.V..[^HW..\^.W..]^.W..b^bX..c^hX..d^nX..e^qX..f^tX..g^.X..h^.X..i^.X..j^.X..k^.X..l^.X..o^.X..p^!Y..q^;Y..r^.Y..s^.Y..t^.Y
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):114042
                                                                                                                                            Entropy (8bit):6.719449431220688
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:32F600C44C8A26FDF518FAFFBCE56B71
                                                                                                                                            SHA1:7481922ABB60EE20F6FAFF9AE4DC4A55F6E6224E
                                                                                                                                            SHA-256:1710CEA2EB84E4FEED749E9E497D01E16B1B244D1A621D380226B8AE7CCE07C6
                                                                                                                                            SHA-512:DA145697AC8D7CE6E8CDF3F6E190C23F9791F4FDC2C1EED2DBC10E8C6377298C4D02DF464752277CD7EC429297860FFE50E7B9DE79632699DD2202B7324F55FE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..........c.j..F..k..F..l. F..n.(F..o.-F..p.5F..q.;F..r.JF..s.[F..t.dF..v.yF..w..F..y..F..z..F..|..F..}..F.....F.....F.....F.....F.....F.....F.....F.....F.....G....(G....4G....CG....RG....VG....ZG....`G....iG....uG.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....G.....H.....H.....H....;H....OH..*.XH..+.[H..,..H../..H..0..H..1..H..2..H..3..H..4..I..5.#I..6.aI..7.vI..>..I..?..I..N..I..g..I..i..I..j..I..k..I..l..I...].I...].I...].J...].J...].J...].J...].J...].J...]%K...]1K...].K...].L...].L...] L...^/L...^5L...^ML...^zL...^.L...^.M...^.M...^?M...^QM...^lM...^rM...^~M...^.M...^.M...^.M...^.M...^.N..%^.N..&^#N..'^/N..)^.N..*^.N..+^.N..,^.N..-^.N...^.N../^.O..0^.O..1^.O..2^vP..3^.P..4^.P..5^.P..8^.P..9^TQ..:^.Q..;^.R..<^ R..>^MR..?^.R..@^.S..A^(S..B^4S..C^LS..D^.T..E^.T..F^.T..G^.U..I^/U..K^5U..L^AU..M^GU..N^SU..O^.U..T^.U..U^.U..V^FV..W^eV..X^tV..Y^.V..Z^.V..[^FW..\^.W..]^.W..b^DX..c^JX..d^PX..e^SX..f^VX..g^nX..h^.X..i^.X..j^.X..k^.X..l^.X..o^.X..p^.Y..q^.Y..r^]Y..s^qY
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):5113713
                                                                                                                                            Entropy (8bit):7.996602002236813
                                                                                                                                            Encrypted:true
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:A1E5AAFE5A1509EF461D584C98484FF7
                                                                                                                                            SHA1:455A36FFF7A12989D0D1FC944A3C8840141D865A
                                                                                                                                            SHA-256:DD0CDD9201C5966DCC8B3AC3F587FDB05CAD09547E267E0D16B8B1A3CFF14772
                                                                                                                                            SHA-512:F98E33FE7E89A7798C6C274B4220C7C5262A2CEDD0C0A04C7821634679F71145ECA78C7A36A9F576712A00FFBABFABF58C958483D2D69FA9960178A7C3581946
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............f.....h..&.....&.....&.....*.....0.....0.....0.....0...0.0...0,9...0.;...07M...0nV...0.^...0.`...0Wg...0.i...0.l...0.l...0.n...0.o...0.p...0.u...0Yz...0.....0k....0.....0h....0.....0f....0.....0....0$....0d....0.....0.....0;....0.....0.....0J....0.....0Z....1z....1w....1.....1.....1F3..(7O6..-7.A...7.B../7.E..07sJ..17'T..27.U..37.W..47?l..57.q..67....77...87....97\...:7....;7....<7....=7....>7....?7....@7X...A7....B7Z...C7....D7....E7....F7....G7....H7....j7X...k7....l7....m7H...n7....o7....p7....q7....r7.,..s7.7..t7.d..u7vl..v7L...w7e...x7u...y7!...z7....{7....|7Y...}7...~7u....72....7.....7....7.....7.....7....7....7U....7e....7"....;d....;.....;.....;.....;G....;U....<O....<*....<.....<.....<.....<O....<.....<.....<.....<.....<(2...<.5...<.k...<yp...<.x...<M....<.....<.....<.....<.....<....<.....<.....<j....<.....<O....H.(...H.-...H.2...H.3...H.7...H.J...H.S...H.V...H_Y...Hma...H.f...H,l...H.v...H.|...H=....HR....H.....H.....H.....Hi....H.....H.....H0....H.....H..
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):35557128
                                                                                                                                            Entropy (8bit):6.210627062782269
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:05E228EF13DA21E56C55E2772CE7110B
                                                                                                                                            SHA1:87D351581604D4638C1031ABE52118E207C1B86B
                                                                                                                                            SHA-256:6360D47E3903450C6647E0AE15423A70242E70E714114666FF58A105FE1F29D2
                                                                                                                                            SHA-512:8268F55BC6A421803E6597F9CA75711A9DB2F3DD11863E41606A5F698243F68CAE8F0B9073ABD8447366ADCF5853F89E82F26114F79ABDDA43F4C75EB90171EE
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:....8...4.......{"files":{"icon.ico":{"size":270398,"integrity":{"algorithm":"SHA256","hash":"85db7f849c7a0a41bb581446f773437ef2175b2952ed9224f00c6abbc9543c0f","blockSize":4194304,"blocks":["85db7f849c7a0a41bb581446f773437ef2175b2952ed9224f00c6abbc9543c0f"]},"offset":"0"},"package.json":{"size":1372,"integrity":{"algorithm":"SHA256","hash":"85cce53211667127ebd8aa37ac383a0cf0d1b4fe918509a6df5d0a2c91afa116","blockSize":4194304,"blocks":["85cce53211667127ebd8aa37ac383a0cf0d1b4fe918509a6df5d0a2c91afa116"]},"offset":"270398"},"src.rar":{"size":1390923,"integrity":{"algorithm":"SHA256","hash":"fd786f9c88d4b6534e2e263ebbd27101a3df5f6e579b02b2e98652c1fb1a6998","blockSize":4194304,"blocks":["fd786f9c88d4b6534e2e263ebbd27101a3df5f6e579b02b2e98652c1fb1a6998"]},"offset":"271770"},"src":{"files":{"alien.png":{"size":184182,"integrity":{"algorithm":"SHA256","hash":"61d672610d6b7e83fe83142c2f90b355343f8c9b14ba76efb829d855d0df33c9","blockSize":4194304,"blocks":["61d672610d6b7e83fe83142c2f90b355343f8c9
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32 executable (console) Intel 80386, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):107520
                                                                                                                                            Entropy (8bit):6.442687067441468
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:792B92C8AD13C46F27C7CED0810694DF
                                                                                                                                            SHA1:D8D449B92DE20A57DF722DF46435BA4553ECC802
                                                                                                                                            SHA-256:9B1FBF0C11C520AE714AF8AA9AF12CFD48503EEDECD7398D8992EE94D1B4DC37
                                                                                                                                            SHA-512:6C247254DC18ED81213A978CCE2E321D6692848C64307097D2C43432A42F4F4F6D3CF22FB92610DFA8B7B16A5F1D94E9017CF64F88F2D08E79C0FE71A9121E40
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......B..O..............h.......j.q.....k.....e......e......e.......zR........._...h......h.f.............h......Rich....................PE..L......W............................l........0....@.......................................@....................................P.......x.......................T.......p...............................@............0..$............................text............................... ..`.rdata...k...0...l..................@..@.data...............................@....gfids..............................@..@.rsrc...x...........................@..@.reloc..T...........................@..B........................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):405456
                                                                                                                                            Entropy (8bit):3.3151721500305027
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F14A9115EDBCC4697515DB49CDAF5B08
                                                                                                                                            SHA1:9C43D69BA11A03278885DC7F285584278DE9CA11
                                                                                                                                            SHA-256:F25DDF52F68DE295BF1CDBD4F7FC6AA9D8F882A16A2F97B4E08E322B6B90546E
                                                                                                                                            SHA-512:3C646B258A2BA7CD3E1D878D3009D181302D790F324C4C2B10A9EEEBBEAB9C49AB43B15B3154AE99749410DEBB2F3AD8D121979EC11E44AD074E1F675CF05DC0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........#..<10.0.139.17-electron.0..........................................h....n......M.......a........a........a........at.......a........a.......... ....9.`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ....`....D..W.....W.....W...D. ..).`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D.(Jb....!.....@..F^.....U`....`.....(Jb....B.....@..F^...`.....D...IDa........D`....D`....D`.......`.....D].......D`.......VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa............L`.....HD...%.D...L.....................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):459776
                                                                                                                                            Entropy (8bit):6.292318384263477
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:29AE8BEF0CF8B6A26F4BEBC5A20900DA
                                                                                                                                            SHA1:515ABE76943288D531B35C1B4C764D1DBDB281DB
                                                                                                                                            SHA-256:711CF342B3A008C9116F6138358A67007A29D281D09CF23D20A5E17AA503EE9B
                                                                                                                                            SHA-512:99981E7074B580ACE154C36D0AA1542DCDB979F36476B680EF19C3FD8A9126B5A808E6E1CF2224D20BA22C328B9A621C280C4FFA74638E358297809001D737AD
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." ......................................................................`A........................................`.......q#..P....p...........=..............p...............................(....3..0............&..(............................text...f........................... ..`.rdata..L.... ......................@..@.data....M....... ..................@....pdata...=.......>..................@..@.00cfg..(....@......................@..@.tls.........P......................@..._RDATA.......`......................@..@.rsrc........p......................@..@.reloc..p...........................@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):3189760
                                                                                                                                            Entropy (8bit):6.423659291721246
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:DC060F0BE506DC5B48402C2FFD62C3A1
                                                                                                                                            SHA1:3988BB810D92B2E317767F8E25D3D1E43F0A6F68
                                                                                                                                            SHA-256:A97834A44A1E28B574C967F1CB93B97CD19E26616439133C11C9DDA4B26D605B
                                                                                                                                            SHA-512:04CF84033462A521C45B71F31AB007F712C6B2F5CFBFC97CE7DBF60074D525933AF6388D9EDE366A00A0983BA4E34A1B318A759CFBBB520ED621DF9979BB315B
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....R+..V.......]'.......................................6...........`A............................................. ......d.....5.......4...............5.x1..<...........................(.....+.0............................................text....P+......R+................. ..`.rdata..<....p+......V+.............@..@.data........./.. ...p/.............@....pdata........4......./.............@..@.00cfg..(.....5......p0.............@..@.tls....).....5......r0.............@..._RDATA........5......t0.............@..@.rsrc.........5......v0.............@..@.reloc..x1....5..2...z0.............@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):726296
                                                                                                                                            Entropy (8bit):4.668258384826135
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:DD0D4997DFAB65B96AAD66D035F6029C
                                                                                                                                            SHA1:65FAA1DBB7CCD902F1F1AF544F6941234FF679D3
                                                                                                                                            SHA-256:F033FB86FA92DF1BE464DE590AA312CC016BC5D6BEA26672C896BF4D3F1261CD
                                                                                                                                            SHA-512:86B06BD0F91F50BD13B3AF179F3F498F10A225D25BA5CA32258F75567E601C3F48F7A3FB436C3B0D2BA53CC9EAAA8F74C95B44458628B0EA716563694A3C7002
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.........lrz10.0.139.17-electron.0..........................................x....v...C......P...M.......a........a........aR.......at.......a........a.......... ....9.`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ....`....D..W.....W.....W...D. ..).`H...D..W.....W.....W...D. ....`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D. ..Y.`H...D..W.....W.....W...D. ..`H...D..W.....W.....W...D.(Jb....!.....@..F^.....U`....`.....(Jb....B.....@..F^...`.....D...IDa........D`....D`....D`.......`.....D].......D`.......VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa...........VIa............L`.....HD...%.D...L.............................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):4654592
                                                                                                                                            Entropy (8bit):6.2751649857298615
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:6B40CE4AF617399536D0EA6EDC84BAAD
                                                                                                                                            SHA1:55C91309FE49AF121DD3DE9C24F60B8CFEA680F1
                                                                                                                                            SHA-256:C64B87D7CEBDAEE8B779859059A6C63FB47C8102A4F7311D678895F87B825C59
                                                                                                                                            SHA-512:9C4CADDB2F6BA7D17683D662A1D9ECD2EFCDF1FC081E0127260F0266EDA78B42C684BCAD5BCCBDC03A06619B9AE4960CCEA67472D7650C53E67A5A70BE6E36C6
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." .....":......... .2.......................................H...........`A........................................xeD.....o.D.P.....H.......F..1............H.Pi...6D......................5D.(....S:.0.............D.H............................text....!:......":................. ..`.rdata..L....@:......&:.............@..@.data....,...`E..&...8E.............@....pdata...1....F..2...^E.............@..@.00cfg..(.....G.......F.............@..@.tls....A.....G.......F.............@..._RDATA........G.......F.............@..@.rsrc.........H.......F.............@..@.reloc..Pi....H..j....F.............@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):106
                                                                                                                                            Entropy (8bit):4.724752649036734
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:8642DD3A87E2DE6E991FAE08458E302B
                                                                                                                                            SHA1:9C06735C31CEC00600FD763A92F8112D085BD12A
                                                                                                                                            SHA-256:32D83FF113FEF532A9F97E0D2831F8656628AB1C99E9060F0332B1532839AFD9
                                                                                                                                            SHA-512:F5D37D1B45B006161E4CEFEEBBA1E33AF879A3A51D16EE3FF8C3968C0C36BBAFAE379BF9124C13310B77774C9CBB4FA53114E83F5B48B5314132736E5BB4496F
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"file_format_version": "1.0.0", "ICD": {"library_path": ".\\vk_swiftshader.dll", "api_version": "1.0.5"}}
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32+ executable (DLL) (console) x86-64, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):850432
                                                                                                                                            Entropy (8bit):6.547858375062584
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:4783D34314EF4FEB241F4FDF36499521
                                                                                                                                            SHA1:89296D6AC36CD005045DB7307BF31005D0CF29A7
                                                                                                                                            SHA-256:6E8BEB4E9DA77313F40E75C4FFAEEAA522B6F054FD792631EC1EFCF8248CA63B
                                                                                                                                            SHA-512:7EF1B0E89590B4AF20F182BED9D82D5175D1C8C675FC3D05DC0EB2F834052124C877135FC68B2988683CF35E8B25870E45F7C126349D28125C021C8EEB4998AC
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZx.....................@...................................x...........!..L.!This program cannot be run in DOS mode.$..PE..d.....{b.........." ......... .......n....................................................`A........................................X...@!......P....p..........|e.............................................(.......0............................................text...v........................... ..`.rdata.............................@..@.data....M....... ...\..............@....pdata..|e.......f...|..............@..@.00cfg..(....@......................@..@.tls.........P......................@..._RDATA.......`......................@..@.rsrc........p......................@..@.reloc..............................@..B................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):12288
                                                                                                                                            Entropy (8bit):5.719859767584478
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0D7AD4F45DC6F5AA87F606D0331C6901
                                                                                                                                            SHA1:48DF0911F0484CBE2A8CDD5362140B63C41EE457
                                                                                                                                            SHA-256:3EB38AE99653A7DBC724132EE240F6E5C4AF4BFE7C01D31D23FAF373F9F2EACA
                                                                                                                                            SHA-512:C07DE7308CB54205E8BD703001A7FE4FD7796C9AC1B4BB330C77C872BF712B093645F40B80CE7127531FE6746A5B66E18EA073AB6A644934ABED9BB64126FEA9
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......qr*.5.D.5.D.5.D...J.2.D.5.E.!.D.....2.D.a0t.1.D.V1n.4.D..3@.4.D.Rich5.D.........PE..L....~.\...........!....."...........).......@...............................p............@..........................B.......@..P............................`.......................................................@..X............................text.... .......".................. ..`.rdata..c....@.......&..............@..@.data...x....P.......*..............@....reloc.......`.......,..............@..B................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:7-zip archive data, version 0.4
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):64183521
                                                                                                                                            Entropy (8bit):7.999990117864593
                                                                                                                                            Encrypted:true
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:05A4F696BE023A221398BB88B61B2213
                                                                                                                                            SHA1:28B8D308B02454754BED9CDC4A9B45BC7273A31C
                                                                                                                                            SHA-256:6CADFED0B64C26160D069AABB21D5946DAF19F6F9AF043AC884E83D78AA7F435
                                                                                                                                            SHA-512:815393565B2B367D2580B74065008EFE95D8D9BA6C74974B0FC6EDA127CD6A1E0CEE4109E27FE07371B1D49ED0F8380E8458F1D65D75B580C33DF9EFB4E95B25
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:7z..'...nh!..\......%................]...6...7p.........l.{e/-X,.7..7.......uN...4.G\.q......pWE......'.....<}...%w..1b......F.Ze.-.D..*....i.K.)..J.h:...&..:Hyo\.~...8w.1.X.Bm.$d..k..3:.....T.-Z'....E9.O#.@od.j:..s....!.......M.C..*L....08!v...^....kk......rRm....|D. }SdeO.cpw.N.5'...*s.~T.F.\u.L2.c<.....*..H.K.?m..,..1A.C....]wK..$......+...a.`..@.....~~K..g.Dq..9G."......u.c...A....z.Qh.m..r..W.). ..R.a.x......O....< ...lT..2.Q......+.I...Q.=uQ..3e.....u.d!X..<z.=..q0.'ys..%..Y-..fQ(_..Y.d.2.I-.nq>BIS...._ .]h.6d.+..[el...)BL`.....gW.?.`S...J..Yn.7.-di........ .J.Qw.!m...#..r...kM.I....'<.Z..../....H.Xi..vd.y..:..._.;b...9C.jf..O.O...H."......c.d....)/ML...(F...*.*4......m...M.a.&..[l..^..j..e.4......... ....m.bg.{.m.>......q..t....B..FmI..Df....`c...3J5+....R....>.@..........jF..*|...l.q..V...I...C..WU...r~. .<Xy?.dv.MP+..Rf...3T.ivK....{.I4....:~...a[E...]q.1V{.......W...Z.8i."....^|....$w...[..D......Tz.j.$.....S....;.C..S..T.g..-
                                                                                                                                            Process:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            File Type:PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):434176
                                                                                                                                            Entropy (8bit):6.584811966667578
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:80E44CE4895304C6A3A831310FBF8CD0
                                                                                                                                            SHA1:36BD49AE21C460BE5753A904B4501F1ABCA53508
                                                                                                                                            SHA-256:B393F05E8FF919EF071181050E1873C9A776E1A0AE8329AEFFF7007D0CADF592
                                                                                                                                            SHA-512:C8BA7B1F9113EAD23E993E74A48C4427AE3562C1F6D9910B2BBE6806C9107CF7D94BC7D204613E4743D0CD869E00DAFD4FB54AAD1E8ADB69C553F3B9E5BC64DF
                                                                                                                                            Malicious:false
                                                                                                                                            Antivirus:
                                                                                                                                            • Antivirus: ReversingLabs, Detection: 0%
                                                                                                                                            Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......L.6a..X2..X2..X2m.[3..X2m.]3..X2Z.]3+.X2Z.\3..X2Z.[3..X2m.\3..X2m.Y3..X2..Y2..X2..\3#.X2..]3..X2..X3..X2...2..X2...2..X2..Z3..X2Rich..X2........PE..L.....\...........!......................... ...............................@............@..........................6.......7..d................................E.....................................@............ ...............................text............................... ..`.rdata..8"... ...$..................@..@.data........P... ...6..............@....rsrc................V..............@..@.reloc...E.......F...Z..............@..B........................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):45056
                                                                                                                                            Entropy (8bit):0.012132763542749385
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:39B1AF084A2D9D22A10E9226AC2AC846
                                                                                                                                            SHA1:D09EF4A9B139E483188E8F2D56D747AD8927D63E
                                                                                                                                            SHA-256:9152A233C57AAA154AAD39A9612850A0B783BF7A9C55AE2E191E7CF0567004AF
                                                                                                                                            SHA-512:9B8A84F9E608087E65FCF84A580E1B64351BFA6648212F750B5C51D3F1F6FAD3E41D4DCF992D4C97AADD79F99A70984C017BDA60C7CA569E5DE0E81951AB0324
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............$...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):270336
                                                                                                                                            Entropy (8bit):0.0071138279907911744
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:8AD15FBFB4D977BF7C344FAB740AC965
                                                                                                                                            SHA1:EE56D689138C1F6C0C6094C8A1DFFD627AC05E79
                                                                                                                                            SHA-256:7AA0306A13A50679C64E44F7D1322C9DDAE54AE0D463627F7573049BF7F4BEC7
                                                                                                                                            SHA-512:AC276B42CCAD89787849B2CD8AC469452EEC87F8F8BD1AF531F32C0532DC8DA137EEAAF66DFA055FEFB0E04D0338888921175FE945E92CE40531661233AB20F3
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):8192
                                                                                                                                            Entropy (8bit):0.011852361981932763
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0962291D6D367570BEE5454721C17E11
                                                                                                                                            SHA1:59D10A893EF321A706A9255176761366115BEDCB
                                                                                                                                            SHA-256:EC1702806F4CC7C42A82FC2B38E89835FDE7C64BB32060E0823C9077CA92EFB7
                                                                                                                                            SHA-512:F555E961B69E09628EAF9C61F465871E6984CD4D31014F954BB747351DAD9CEA6D17C1DB4BCA2C1EB7F187CB5F3C0518748C339C8B43BBD1DBD94AEAA16F58ED
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):4202496
                                                                                                                                            Entropy (8bit):0.019145540117924173
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:ACCF2F419CE6D0648FC3EC36143A19CC
                                                                                                                                            SHA1:90EBDEEC0934BE0BFA75C7B0E62A4D5B1DD63A20
                                                                                                                                            SHA-256:8C728CBE1FA75670B2BEA12FB35A977F92E802750138E707738620B4EE8E6763
                                                                                                                                            SHA-512:3EAA2E9B63104A8824C8595AD8727741BC37E68275142BD6FE1FCFDE9328B81CA4C2B7749CC32E3F76E268D0B842E5AE2D9662E320D3316F5759EF00E5156E26
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text, with very long lines (65447)
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):89501
                                                                                                                                            Entropy (8bit):5.289893677458563
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:8FB8FEE4FCC3CC86FF6C724154C49C42
                                                                                                                                            SHA1:B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4
                                                                                                                                            SHA-256:FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E
                                                                                                                                            SHA-512:F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:FoxPro FPT, blocks size 512, next free block index 3284796353, field type 0
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):524656
                                                                                                                                            Entropy (8bit):5.027445846313988E-4
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:451FD08CE0471E694747E428129B446A
                                                                                                                                            SHA1:7512C91DA736C35E6DFBC6789DDDDBE847A28791
                                                                                                                                            SHA-256:EA5118B5659FB9E660504B95E8C0EF2654F801B52E5E7AEA79564BE636734DC7
                                                                                                                                            SHA-512:295ACFCB8F5FBEDF90E679C653BF166D9F7CC131A03C168BA2118CDBADFB22E7E9E762B945B86EE1054FC1EF3D41A261242038BD97193D2800F9F602505E65D7
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................W.>..X/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):24
                                                                                                                                            Entropy (8bit):2.1431558784658327
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:54CB446F628B2EA4A5BCE5769910512E
                                                                                                                                            SHA1:C27CA848427FE87F5CF4D0E0E3CD57151B0D820D
                                                                                                                                            SHA-256:FBCFE23A2ECB82B7100C50811691DDE0A33AA3DA8D176BE9882A9DB485DC0F2D
                                                                                                                                            SHA-512:8F6ED2E91AED9BD415789B1DBE591E7EAB29F3F1B48FDFA5E864D7BF4AE554ACC5D82B4097A770DABC228523253623E4296C5023CF48252E1B94382C43123CB0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:0\r..m..................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):48
                                                                                                                                            Entropy (8bit):2.955557653394731
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F0CFA12BB14B3B0EF6AFA1BF083DD542
                                                                                                                                            SHA1:453FFDAFE99A8259E394ED5B5E251F32932C6F85
                                                                                                                                            SHA-256:BFB3CA68F37D93800DB3622FA55304EBF44ADB9551E2488C96AEBB9F6B08E680
                                                                                                                                            SHA-512:B1A1AAFCADF2EB1920BB520E994C779BC9A07EE358D9355A2D73D2DED8F6CBAF58795C0CC2DCFBB3D5E055DFA4DB787DB63157757317D66596528EDA7E0AF652
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:(...=...oy retne..........................J..X/.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):48
                                                                                                                                            Entropy (8bit):2.955557653394731
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F0CFA12BB14B3B0EF6AFA1BF083DD542
                                                                                                                                            SHA1:453FFDAFE99A8259E394ED5B5E251F32932C6F85
                                                                                                                                            SHA-256:BFB3CA68F37D93800DB3622FA55304EBF44ADB9551E2488C96AEBB9F6B08E680
                                                                                                                                            SHA-512:B1A1AAFCADF2EB1920BB520E994C779BC9A07EE358D9355A2D73D2DED8F6CBAF58795C0CC2DCFBB3D5E055DFA4DB787DB63157757317D66596528EDA7E0AF652
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:(...=...oy retne..........................J..X/.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):24
                                                                                                                                            Entropy (8bit):2.1431558784658327
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:54CB446F628B2EA4A5BCE5769910512E
                                                                                                                                            SHA1:C27CA848427FE87F5CF4D0E0E3CD57151B0D820D
                                                                                                                                            SHA-256:FBCFE23A2ECB82B7100C50811691DDE0A33AA3DA8D176BE9882A9DB485DC0F2D
                                                                                                                                            SHA-512:8F6ED2E91AED9BD415789B1DBE591E7EAB29F3F1B48FDFA5E864D7BF4AE554ACC5D82B4097A770DABC228523253623E4296C5023CF48252E1B94382C43123CB0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:0\r..m..................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):48
                                                                                                                                            Entropy (8bit):2.955557653394731
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F0CFA12BB14B3B0EF6AFA1BF083DD542
                                                                                                                                            SHA1:453FFDAFE99A8259E394ED5B5E251F32932C6F85
                                                                                                                                            SHA-256:BFB3CA68F37D93800DB3622FA55304EBF44ADB9551E2488C96AEBB9F6B08E680
                                                                                                                                            SHA-512:B1A1AAFCADF2EB1920BB520E994C779BC9A07EE358D9355A2D73D2DED8F6CBAF58795C0CC2DCFBB3D5E055DFA4DB787DB63157757317D66596528EDA7E0AF652
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:(...=...oy retne..........................J..X/.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):48
                                                                                                                                            Entropy (8bit):2.955557653394731
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F0CFA12BB14B3B0EF6AFA1BF083DD542
                                                                                                                                            SHA1:453FFDAFE99A8259E394ED5B5E251F32932C6F85
                                                                                                                                            SHA-256:BFB3CA68F37D93800DB3622FA55304EBF44ADB9551E2488C96AEBB9F6B08E680
                                                                                                                                            SHA-512:B1A1AAFCADF2EB1920BB520E994C779BC9A07EE358D9355A2D73D2DED8F6CBAF58795C0CC2DCFBB3D5E055DFA4DB787DB63157757317D66596528EDA7E0AF652
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:(...=...oy retne..........................J..X/.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:FoxPro FPT, blocks size 512, next free block index 3284796609, field type 0
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):8192
                                                                                                                                            Entropy (8bit):0.01057775872642915
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:CF89D16BB9107C631DAABF0C0EE58EFB
                                                                                                                                            SHA1:3AE5D3A7CF1F94A56E42F9A58D90A0B9616AE74B
                                                                                                                                            SHA-256:D6A5FE39CD672781B256E0E3102F7022635F1D4BB7CFCC90A80FFFE4D0F3877E
                                                                                                                                            SHA-512:8CB5B059C8105EB91E74A7D5952437AAA1ADA89763C5843E7B0F1B93D9EBE15ED40F287C652229291FAC02D712CF7FF5ECECEF276BA0D7DDC35558A3EC3F77B0
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:............$...........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):270336
                                                                                                                                            Entropy (8bit):8.280239615765425E-4
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:D0D388F3865D0523E451D6BA0BE34CC4
                                                                                                                                            SHA1:8571C6A52AACC2747C048E3419E5657B74612995
                                                                                                                                            SHA-256:902F30C1FB0597D0734BC34B979EC5D131F8F39A4B71B338083821216EC8D61B
                                                                                                                                            SHA-512:376011D00DE659EB6082A74E862CFAC97A9BB508E0B740761505142E2D24EC1C30AA61EFBC1C0DD08FF0F34734444DE7F77DD90A6CA42B48A4C7FAD5F0BDDD17
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):8192
                                                                                                                                            Entropy (8bit):0.011852361981932763
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:0962291D6D367570BEE5454721C17E11
                                                                                                                                            SHA1:59D10A893EF321A706A9255176761366115BEDCB
                                                                                                                                            SHA-256:EC1702806F4CC7C42A82FC2B38E89835FDE7C64BB32060E0823C9077CA92EFB7
                                                                                                                                            SHA-512:F555E961B69E09628EAF9C61F465871E6984CD4D31014F954BB747351DAD9CEA6D17C1DB4BCA2C1EB7F187CB5F3C0518748C339C8B43BBD1DBD94AEAA16F58ED
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):8192
                                                                                                                                            Entropy (8bit):0.012340643231932763
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:41876349CB12D6DB992F1309F22DF3F0
                                                                                                                                            SHA1:5CF26B3420FC0302CD0A71E8D029739B8765BE27
                                                                                                                                            SHA-256:E09F42C398D688DCE168570291F1F92D079987DEDA3099A34ADB9E8C0522B30C
                                                                                                                                            SHA-512:E9A4FC1F7CB6AE2901F8E02354A92C4AAA7A53C640DCF692DB42A27A5ACC2A3BFB25A0DE0EB08AB53983132016E7D43132EA4292E439BB636AAFD53FB6EF907E
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:FoxPro FPT, blocks size 512, next free block index 3284796353, field type 0
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):262512
                                                                                                                                            Entropy (8bit):9.629307656487099E-4
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:18F181613C9363706C3E3E01EC0B2427
                                                                                                                                            SHA1:516FB3B60B95EA6D8B65F6407E8823612D550D26
                                                                                                                                            SHA-256:7940D3AC66C52769B4897CCFC48C50C82E7F8D60CC0A0E3D8126D91CBA252236
                                                                                                                                            SHA-512:0110ABA227053A07FE7E97247F3495D32B56407B65C7A88581E5F6E300EDF8EFEA419CAF8AEF8CB2B577D894DA4092E9343D12BBCD6AC843D611F61F7219FD40
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.............................................X/.........................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):389
                                                                                                                                            Entropy (8bit):5.662391898178113
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:3109170BE819AB0494C57C5911822D40
                                                                                                                                            SHA1:985328A083417346CB0906175A8C30B6B17FE7AF
                                                                                                                                            SHA-256:7E8A3C95E48D9B107ACC6143402CCF4497A42C5D0C5C593E8A2A87AB44A8EEB6
                                                                                                                                            SHA-512:B11723F19E0C595ADF955799F8524D8895C671F049026877F15D8F5F278BED1A599BE40B0FC754B73669CB608F0AB59CE1DA6CC1A1220D3D405C0EB2150E99E4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAAB4prDx8rc4Qa/HvWbiwaLkAAAAAAIAAAAAABBmAAAAAQAAIAAAAJDZ7PLH3cj9LjgQdLlAfPMzjSo2OCKZC6Hnss+c7LlXAAAAAA6AAAAAAgAAIAAAAPDfPqOZT78RMdMZViLSYleh43O+J4U0OwPa7nFUjYY/MAAAAPsm1VfCzdxgJYdp/mnDnfDHOz9wS5Gebo0kea+HLwZydOp9/23ku3HTOLNHGuB4DEAAAACQlhGdQ/thkAAs9lVqnv13Ha7bkh/2W8n2XBPZLSO892EaOpdr4K+aJeWOnq/N+rwWwFviBDqiPFXTV3yxzMom"}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):16
                                                                                                                                            Entropy (8bit):3.2743974703476995
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                            SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                            SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                            SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:MANIFEST-000001.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):16
                                                                                                                                            Entropy (8bit):3.2743974703476995
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:46295CAC801E5D4857D09837238A6394
                                                                                                                                            SHA1:44E0FA1B517DBF802B18FAF0785EEEA6AC51594B
                                                                                                                                            SHA-256:0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
                                                                                                                                            SHA-512:8969402593F927350E2CEB4B5BC2A277F3754697C1961E3D6237DA322257FBAB42909E1A742E22223447F3A4805F8D8EF525432A7C3515A549E984D3EFF72B23
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:MANIFEST-000001.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:ASCII text
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):265
                                                                                                                                            Entropy (8bit):5.29415403780996
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:E99BDF1E71FDBD69D7D14CE8EE3D874F
                                                                                                                                            SHA1:CF5949B5042848CB65D307D1D1E2C7145C1AD620
                                                                                                                                            SHA-256:40AFB4025525B011FB0532F6F297D36F4F4384CEB7605640F94913A949CD41E8
                                                                                                                                            SHA-512:59A05C4C49F277D57A6928B8BD43B960FC8896A35ABC7E91500BF3B6010700446193C159938F67A3858DC58384A73B7415C2BA4FA892FEF269DF1129232CB4DC
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:2023/04/16-15:17:58.775 11fc Creating DB C:\Users\user\AppData\Roaming\GalacticShooter\Local Storage\leveldb since it was missing..2023/04/16-15:17:58.806 11fc Reusing MANIFEST C:\Users\user\AppData\Roaming\GalacticShooter\Local Storage\leveldb/MANIFEST-000001.
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:OpenPGP Secret Key
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):41
                                                                                                                                            Entropy (8bit):4.704993772857998
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:5AF87DFD673BA2115E2FCF5CFDB727AB
                                                                                                                                            SHA1:D5B5BBF396DC291274584EF71F444F420B6056F1
                                                                                                                                            SHA-256:F9D31B278E215EB0D0E9CD709EDFA037E828F36214AB7906F612160FEAD4B2B4
                                                                                                                                            SHA-512:DE34583A7DBAFE4DD0DC0601E8F6906B9BC6A00C56C9323561204F77ABBC0DC9007C480FFE4092FF2F194D54616CAF50AECBD4A1E9583CAE0C76AD6DD7C2375B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:.|.."....leveldb.BytewiseComparator......
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):59
                                                                                                                                            Entropy (8bit):4.619434150836742
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:2800881C775077E1C4B6E06BF4676DE4
                                                                                                                                            SHA1:2873631068C8B3B9495638C865915BE822442C8B
                                                                                                                                            SHA-256:226EEC4486509917AA336AFEBD6FF65777B75B65F1FB06891D2A857A9421A974
                                                                                                                                            SHA-512:E342407AB65CC68F1B3FD706CD0A37680A0864FFD30A6539730180EDE2CDCD732CC97AE0B9EF7DB12DA5C0F83E429DF0840DBF7596ACA859A0301665E517377B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:SQLite 3.x database, last written using SQLite version 3037001, file counter 3, database pages 5, cookie 0x3, schema 4, UTF-8, version-valid-for 3
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):20480
                                                                                                                                            Entropy (8bit):0.5557756557013777
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:B0D885ED086A78B645F86FA166C5314D
                                                                                                                                            SHA1:5044E969D74CDB9DD452D3E4FFDF0C7FE9425E0E
                                                                                                                                            SHA-256:C25E600EA937DB69A718162D2678A12B7898BEAA81C4C7F2E20D6B4D7ED48710
                                                                                                                                            SHA-512:E547D496B9E7AEA401BC6AB580C7BBDD7F55C5E3C67CFBF9F0C0BFE299812A2C77B8DD7D7A0A0DA9D3A53A538A4D56124E7CA1BBA04A567ABDF6D4144647BE0A
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:SQLite format 3......@ ..........................................................................WI.........g...E......................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................................
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):59
                                                                                                                                            Entropy (8bit):4.619434150836742
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:2800881C775077E1C4B6E06BF4676DE4
                                                                                                                                            SHA1:2873631068C8B3B9495638C865915BE822442C8B
                                                                                                                                            SHA-256:226EEC4486509917AA336AFEBD6FF65777B75B65F1FB06891D2A857A9421A974
                                                                                                                                            SHA-512:E342407AB65CC68F1B3FD706CD0A37680A0864FFD30A6539730180EDE2CDCD732CC97AE0B9EF7DB12DA5C0F83E429DF0840DBF7596ACA859A0301665E517377B
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"net":{"network_qualities":{"CAESABiAgICA+P////8B":"4G"}}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):57
                                                                                                                                            Entropy (8bit):4.283088322451805
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:58127C59CB9E1DA127904C341D15372B
                                                                                                                                            SHA1:62445484661D8036CE9788BAEABA31D204E9A5FC
                                                                                                                                            SHA-256:BE4B8924AB38E8ACF350E6E3B9F1F63A1A94952D8002759ACD6946C4D5D0B5DE
                                                                                                                                            SHA-512:8D1815B277A93AD590FF79B6F52C576CF920C38C4353C24193F707D66884C942F39FF3989530055D2FADE540ADE243B41B6EB03CD0CC361C3B5D514CCA28B50A
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"spellcheck":{"dictionaries":["en-US"],"dictionary":""}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):389
                                                                                                                                            Entropy (8bit):5.662391898178113
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:3109170BE819AB0494C57C5911822D40
                                                                                                                                            SHA1:985328A083417346CB0906175A8C30B6B17FE7AF
                                                                                                                                            SHA-256:7E8A3C95E48D9B107ACC6143402CCF4497A42C5D0C5C593E8A2A87AB44A8EEB6
                                                                                                                                            SHA-512:B11723F19E0C595ADF955799F8524D8895C671F049026877F15D8F5F278BED1A599BE40B0FC754B73669CB608F0AB59CE1DA6CC1A1220D3D405C0EB2150E99E4
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"os_crypt":{"encrypted_key":"RFBBUEkBAAAA0Iyd3wEV0RGMegDAT8KX6wEAAAB4prDx8rc4Qa/HvWbiwaLkAAAAAAIAAAAAABBmAAAAAQAAIAAAAJDZ7PLH3cj9LjgQdLlAfPMzjSo2OCKZC6Hnss+c7LlXAAAAAA6AAAAAAgAAIAAAAPDfPqOZT78RMdMZViLSYleh43O+J4U0OwPa7nFUjYY/MAAAAPsm1VfCzdxgJYdp/mnDnfDHOz9wS5Gebo0kea+HLwZydOp9/23ku3HTOLNHGuB4DEAAAACQlhGdQ/thkAAs9lVqnv13Ha7bkh/2W8n2XBPZLSO892EaOpdr4K+aJeWOnq/N+rwWwFviBDqiPFXTV3yxzMom"}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:JSON data
                                                                                                                                            Category:modified
                                                                                                                                            Size (bytes):57
                                                                                                                                            Entropy (8bit):4.283088322451805
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:58127C59CB9E1DA127904C341D15372B
                                                                                                                                            SHA1:62445484661D8036CE9788BAEABA31D204E9A5FC
                                                                                                                                            SHA-256:BE4B8924AB38E8ACF350E6E3B9F1F63A1A94952D8002759ACD6946C4D5D0B5DE
                                                                                                                                            SHA-512:8D1815B277A93AD590FF79B6F52C576CF920C38C4353C24193F707D66884C942F39FF3989530055D2FADE540ADE243B41B6EB03CD0CC361C3B5D514CCA28B50A
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:{"spellcheck":{"dictionaries":["en-US"],"dictionary":""}}
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:Unicode text, UTF-16, little-endian text, with no line terminators
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2
                                                                                                                                            Entropy (8bit):1.0
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F3B25701FE362EC84616A93A45CE9998
                                                                                                                                            SHA1:D62636D8CAEC13F04E28442A0A6FA1AFEB024BBB
                                                                                                                                            SHA-256:B3D510EF04275CA8E698E5B3CBB0ECE3949EF9252F0CDC839E9EE347409A2209
                                                                                                                                            SHA-512:98C5F56F3DE340690C139E58EB7DAC111979F0D4DFFE9C4B24FF849510F4B6FFA9FD608C0A3DE9AC3C9FD2190F0EFAF715309061490F9755A9BFDF1C54CA0D84
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:Unicode text, UTF-16, little-endian text, with no line terminators
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2
                                                                                                                                            Entropy (8bit):1.0
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F3B25701FE362EC84616A93A45CE9998
                                                                                                                                            SHA1:D62636D8CAEC13F04E28442A0A6FA1AFEB024BBB
                                                                                                                                            SHA-256:B3D510EF04275CA8E698E5B3CBB0ECE3949EF9252F0CDC839E9EE347409A2209
                                                                                                                                            SHA-512:98C5F56F3DE340690C139E58EB7DAC111979F0D4DFFE9C4B24FF849510F4B6FFA9FD608C0A3DE9AC3C9FD2190F0EFAF715309061490F9755A9BFDF1C54CA0D84
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..
                                                                                                                                            Process:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            File Type:Unicode text, UTF-16, little-endian text, with no line terminators
                                                                                                                                            Category:dropped
                                                                                                                                            Size (bytes):2
                                                                                                                                            Entropy (8bit):1.0
                                                                                                                                            Encrypted:false
                                                                                                                                            SSDEEP:
                                                                                                                                            MD5:F3B25701FE362EC84616A93A45CE9998
                                                                                                                                            SHA1:D62636D8CAEC13F04E28442A0A6FA1AFEB024BBB
                                                                                                                                            SHA-256:B3D510EF04275CA8E698E5B3CBB0ECE3949EF9252F0CDC839E9EE347409A2209
                                                                                                                                            SHA-512:98C5F56F3DE340690C139E58EB7DAC111979F0D4DFFE9C4B24FF849510F4B6FFA9FD608C0A3DE9AC3C9FD2190F0EFAF715309061490F9755A9BFDF1C54CA0D84
                                                                                                                                            Malicious:false
                                                                                                                                            Preview:..
                                                                                                                                            File type:PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive
                                                                                                                                            Entropy (8bit):7.999391649323491
                                                                                                                                            TrID:
                                                                                                                                            • Win32 Executable (generic) a (10002005/4) 99.96%
                                                                                                                                            • Generic Win/DOS Executable (2004/3) 0.02%
                                                                                                                                            • DOS Executable Generic (2002/1) 0.02%
                                                                                                                                            • Autodesk FLIC Image File (extensions: flc, fli, cel) (7/3) 0.00%
                                                                                                                                            File name:GalacticShooter (3).exe
                                                                                                                                            File size:64791841
                                                                                                                                            MD5:83024ea067ab552d39ffdb6e12a30817
                                                                                                                                            SHA1:23d6b96f806e1ca8a10dfa16e7f35b3f2801a489
                                                                                                                                            SHA256:f96f3a4f4cdab5176a055736464d979f7cbd902298c910cbbdb08e955695bf73
                                                                                                                                            SHA512:8c8341a179f30cc5a4c9cb3efd70f65a5e337e3ba948677014b9433361a70c84274a871dfe385612511d73a5356d1eda2c2ea3f1a50aecdb557bbf2aeae861f3
                                                                                                                                            SSDEEP:1572864:jtve1M4rkN1winHaBHNYV6vSAuZ8F0Pa7:jlSCpnq6xbPa7
                                                                                                                                            TLSH:04E7331CFA16AA17D593D8B78CE9C3E481AAE2811310D1A78764D7BC6F92D201DF097F
                                                                                                                                            File Content Preview:MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........1...Pf..Pf..Pf.*_9..Pf..Pg.LPf.*_;..Pf..sV..Pf..V`..Pf.Rich.Pf.........................PE..L......\.................h...8...@.
                                                                                                                                            Icon Hash:100c1232b2320c10
                                                                                                                                            Entrypoint:0x40338f
                                                                                                                                            Entrypoint Section:.text
                                                                                                                                            Digitally signed:false
                                                                                                                                            Imagebase:0x400000
                                                                                                                                            Subsystem:windows gui
                                                                                                                                            Image File Characteristics:RELOCS_STRIPPED, EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE
                                                                                                                                            DLL Characteristics:DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE
                                                                                                                                            Time Stamp:0x5C157F86 [Sat Dec 15 22:26:14 2018 UTC]
                                                                                                                                            TLS Callbacks:
                                                                                                                                            CLR (.Net) Version:
                                                                                                                                            OS Version Major:4
                                                                                                                                            OS Version Minor:0
                                                                                                                                            File Version Major:4
                                                                                                                                            File Version Minor:0
                                                                                                                                            Subsystem Version Major:4
                                                                                                                                            Subsystem Version Minor:0
                                                                                                                                            Import Hash:b34f154ec913d2d2c435cbd644e91687
                                                                                                                                            Instruction
                                                                                                                                            sub esp, 000002D4h
                                                                                                                                            push ebx
                                                                                                                                            push esi
                                                                                                                                            push edi
                                                                                                                                            push 00000020h
                                                                                                                                            pop edi
                                                                                                                                            xor ebx, ebx
                                                                                                                                            push 00008001h
                                                                                                                                            mov dword ptr [esp+14h], ebx
                                                                                                                                            mov dword ptr [esp+10h], 0040A2E0h
                                                                                                                                            mov dword ptr [esp+1Ch], ebx
                                                                                                                                            call dword ptr [004080A8h]
                                                                                                                                            call dword ptr [004080A4h]
                                                                                                                                            and eax, BFFFFFFFh
                                                                                                                                            cmp ax, 00000006h
                                                                                                                                            mov dword ptr [0047AEECh], eax
                                                                                                                                            je 00007FB90CC18F83h
                                                                                                                                            push ebx
                                                                                                                                            call 00007FB90CC1C235h
                                                                                                                                            cmp eax, ebx
                                                                                                                                            je 00007FB90CC18F79h
                                                                                                                                            push 00000C00h
                                                                                                                                            call eax
                                                                                                                                            mov esi, 004082B0h
                                                                                                                                            push esi
                                                                                                                                            call 00007FB90CC1C1AFh
                                                                                                                                            push esi
                                                                                                                                            call dword ptr [00408150h]
                                                                                                                                            lea esi, dword ptr [esi+eax+01h]
                                                                                                                                            cmp byte ptr [esi], 00000000h
                                                                                                                                            jne 00007FB90CC18F5Ch
                                                                                                                                            push 0000000Ah
                                                                                                                                            call 00007FB90CC1C208h
                                                                                                                                            push 00000008h
                                                                                                                                            call 00007FB90CC1C201h
                                                                                                                                            push 00000006h
                                                                                                                                            mov dword ptr [0047AEE4h], eax
                                                                                                                                            call 00007FB90CC1C1F5h
                                                                                                                                            cmp eax, ebx
                                                                                                                                            je 00007FB90CC18F81h
                                                                                                                                            push 0000001Eh
                                                                                                                                            call eax
                                                                                                                                            test eax, eax
                                                                                                                                            je 00007FB90CC18F79h
                                                                                                                                            or byte ptr [0047AEEFh], 00000040h
                                                                                                                                            push ebp
                                                                                                                                            call dword ptr [00408044h]
                                                                                                                                            push ebx
                                                                                                                                            call dword ptr [004082A0h]
                                                                                                                                            mov dword ptr [0047AFB8h], eax
                                                                                                                                            push ebx
                                                                                                                                            lea eax, dword ptr [esp+34h]
                                                                                                                                            push 000002B4h
                                                                                                                                            push eax
                                                                                                                                            push ebx
                                                                                                                                            push 00440208h
                                                                                                                                            call dword ptr [00408188h]
                                                                                                                                            push 0040A2C8h
                                                                                                                                            Programming Language:
                                                                                                                                            • [EXP] VC++ 6.0 SP5 build 8804
                                                                                                                                            NameVirtual AddressVirtual Size Is in Section
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_EXPORT0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_IMPORT0x86100xa0.rdata
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_RESOURCE0x10b0000x42a48.rsrc
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_EXCEPTION0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_SECURITY0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_BASERELOC0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_DEBUG0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_COPYRIGHT0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_GLOBALPTR0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_TLS0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_IAT0x80000x2b0.rdata
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR0x00x0
                                                                                                                                            IMAGE_DIRECTORY_ENTRY_RESERVED0x00x0
                                                                                                                                            NameVirtual AddressVirtual SizeRaw SizeXored PEZLIB ComplexityFile TypeEntropyCharacteristics
                                                                                                                                            .text0x10000x66270x6800False0.6646259014423077data6.450282348506287IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ
                                                                                                                                            .rdata0x80000x14a20x1600False0.4405184659090909data5.025178929113415IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
                                                                                                                                            .data0xa0000x70ff80x600False0.5182291666666666data4.037117731448378IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                                                                                                                                            .ndata0x7b0000x900000x0False0empty0.0IMAGE_SCN_CNT_UNINITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE
                                                                                                                                            .rsrc0x10b0000x42a480x42c00False0.08933169475655431data3.042355000676531IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ
                                                                                                                                            NameRVASizeTypeLanguageCountry
                                                                                                                                            RT_ICON0x10b1d80x42028Device independent bitmap graphic, 256 x 512 x 32, image size 262144, resolution 39 x 39 px/mEnglishUnited States
                                                                                                                                            RT_DIALOG0x14d2000x100dataEnglishUnited States
                                                                                                                                            RT_DIALOG0x14d3000xf8dataEnglishUnited States
                                                                                                                                            RT_DIALOG0x14d3f80x60dataEnglishUnited States
                                                                                                                                            RT_GROUP_ICON0x14d4580x14dataEnglishUnited States
                                                                                                                                            RT_VERSION0x14d4700x298OpenPGP Public KeyEnglishUnited States
                                                                                                                                            RT_MANIFEST0x14d7080x33eXML 1.0 document, ASCII text, with very long lines (830), with no line terminatorsEnglishUnited States
                                                                                                                                            DLLImport
                                                                                                                                            KERNEL32.dllSetEnvironmentVariableW, SetFileAttributesW, Sleep, GetTickCount, GetFileSize, GetModuleFileNameW, GetCurrentProcess, CopyFileW, SetCurrentDirectoryW, GetFileAttributesW, GetWindowsDirectoryW, GetTempPathW, GetCommandLineW, GetVersion, SetErrorMode, lstrlenW, lstrcpynW, GetDiskFreeSpaceW, ExitProcess, GetShortPathNameW, CreateThread, GetLastError, CreateDirectoryW, CreateProcessW, RemoveDirectoryW, lstrcmpiA, CreateFileW, GetTempFileNameW, WriteFile, lstrcpyA, MoveFileExW, lstrcatW, GetSystemDirectoryW, GetProcAddress, GetModuleHandleA, GetExitCodeProcess, WaitForSingleObject, lstrcmpiW, MoveFileW, GetFullPathNameW, SetFileTime, SearchPathW, CompareFileTime, lstrcmpW, CloseHandle, ExpandEnvironmentStringsW, GlobalFree, GlobalLock, GlobalUnlock, GlobalAlloc, FindFirstFileW, FindNextFileW, DeleteFileW, SetFilePointer, ReadFile, FindClose, lstrlenA, MulDiv, MultiByteToWideChar, WideCharToMultiByte, GetPrivateProfileStringW, WritePrivateProfileStringW, FreeLibrary, LoadLibraryExW, GetModuleHandleW
                                                                                                                                            USER32.dllGetSystemMenu, SetClassLongW, EnableMenuItem, IsWindowEnabled, SetWindowPos, GetSysColor, GetWindowLongW, SetCursor, LoadCursorW, CheckDlgButton, GetMessagePos, LoadBitmapW, CallWindowProcW, IsWindowVisible, CloseClipboard, SetClipboardData, EmptyClipboard, OpenClipboard, ScreenToClient, GetWindowRect, GetDlgItem, GetSystemMetrics, SetDlgItemTextW, GetDlgItemTextW, MessageBoxIndirectW, CharPrevW, CharNextA, wsprintfA, DispatchMessageW, PeekMessageW, ReleaseDC, EnableWindow, InvalidateRect, SendMessageW, DefWindowProcW, BeginPaint, GetClientRect, FillRect, DrawTextW, EndDialog, RegisterClassW, SystemParametersInfoW, CreateWindowExW, GetClassInfoW, DialogBoxParamW, CharNextW, ExitWindowsEx, DestroyWindow, GetDC, SetTimer, SetWindowTextW, LoadImageW, SetForegroundWindow, ShowWindow, IsWindow, SetWindowLongW, FindWindowExW, TrackPopupMenu, AppendMenuW, CreatePopupMenu, EndPaint, CreateDialogParamW, SendMessageTimeoutW, wsprintfW, PostQuitMessage
                                                                                                                                            GDI32.dllSelectObject, SetBkMode, CreateFontIndirectW, SetTextColor, DeleteObject, GetDeviceCaps, CreateBrushIndirect, SetBkColor
                                                                                                                                            SHELL32.dllSHGetSpecialFolderLocation, ShellExecuteExW, SHGetPathFromIDListW, SHBrowseForFolderW, SHGetFileInfoW, SHFileOperationW
                                                                                                                                            ADVAPI32.dllAdjustTokenPrivileges, RegCreateKeyExW, RegOpenKeyExW, SetFileSecurityW, OpenProcessToken, LookupPrivilegeValueW, RegEnumValueW, RegDeleteKeyW, RegDeleteValueW, RegCloseKey, RegSetValueExW, RegQueryValueExW, RegEnumKeyW
                                                                                                                                            COMCTL32.dllImageList_Create, ImageList_AddMasked, ImageList_Destroy
                                                                                                                                            ole32.dllOleUninitialize, OleInitialize, CoTaskMemFree, CoCreateInstance
                                                                                                                                            Language of compilation systemCountry where language is spokenMap
                                                                                                                                            EnglishUnited States
                                                                                                                                            TimestampSource PortDest PortSource IPDest IP
                                                                                                                                            Apr 16, 2023 15:18:05.341744900 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.341783047 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.342318058 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.362824917 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.362844944 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.362982988 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.377768993 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.377782106 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.378448009 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.378457069 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.472282887 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.472938061 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.472948074 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.473937988 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.474138021 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.476471901 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.478089094 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.478125095 CEST44349859198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.478245020 CEST49859443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.479491949 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.479501009 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.480891943 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.481127977 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.481602907 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.481668949 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.481812954 CEST44349860198.251.88.130192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.481831074 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.482014894 CEST49860443192.168.11.20198.251.88.130
                                                                                                                                            Apr 16, 2023 15:18:05.496284962 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.496383905 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.496490955 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.497131109 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.497181892 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.568418026 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.569063902 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.569098949 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.571892977 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.572103977 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.572807074 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:05.572895050 CEST4434986134.117.59.81192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.573056936 CEST49861443192.168.11.2034.117.59.81
                                                                                                                                            Apr 16, 2023 15:18:07.105555058 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.105572939 CEST44349862162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.105725050 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.106096029 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.106106043 CEST44349862162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.136534929 CEST44349862162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.137151003 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.138057947 CEST44349862162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.138253927 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.138892889 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.138923883 CEST44349862162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.139051914 CEST49862443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.142036915 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.142056942 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.142317057 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.142663002 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.142673969 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.165839911 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.166321993 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.167243958 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.167498112 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.167999983 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.168070078 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.168199062 CEST44349863162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.168276072 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.168364048 CEST49863443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.175349951 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.175363064 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.175465107 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.175479889 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.175537109 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.175863028 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.175868988 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.175940037 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.176158905 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.176168919 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.185718060 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.185734034 CEST44349866162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.185950994 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.195314884 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.195339918 CEST44349866162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.204272985 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.204288960 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.204420090 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.204703093 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.204710960 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.224000931 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.224523067 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.224529982 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.225698948 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.225887060 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.226515055 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.226538897 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.226676941 CEST44349864162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.226741076 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.226836920 CEST49864443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.227893114 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.228792906 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.228804111 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.229882002 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.230252981 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.230865002 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.230870962 CEST44349866162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.230910063 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.231048107 CEST44349865162.159.136.232192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.231226921 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.231226921 CEST49865443192.168.11.20162.159.136.232
                                                                                                                                            Apr 16, 2023 15:18:07.231422901 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.232568979 CEST44349866162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.232779026 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.233264923 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.233325958 CEST44349866162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.233453989 CEST49866443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:07.236908913 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.237308979 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.238370895 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.238611937 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.241274118 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.241333008 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.241435051 CEST44349867162.159.130.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.241471052 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:07.241597891 CEST49867443192.168.11.20162.159.130.233
                                                                                                                                            Apr 16, 2023 15:18:08.249231100 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.249255896 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.249603987 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.249712944 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.249732018 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.272145987 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.272578001 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.273622036 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.273962021 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.274455070 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.274513006 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.274703979 CEST44349868162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:08.274827003 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:08.274923086 CEST49868443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.280026913 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.280049086 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.280287981 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.280684948 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.280694008 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.303757906 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.304305077 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.305285931 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.305555105 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.306256056 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.306313992 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.306526899 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:09.306533098 CEST44349869162.159.128.233192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:09.306669950 CEST49869443192.168.11.20162.159.128.233
                                                                                                                                            Apr 16, 2023 15:18:32.570858002 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.570873022 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.571132898 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.571217060 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.571233034 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.571362972 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.571959972 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.571966887 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.572175980 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.572204113 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.588577032 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.589157104 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.590130091 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.590368986 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.599809885 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.600357056 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.601320028 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.601486921 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.628968000 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.628992081 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.629179001 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.629369020 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.629381895 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.629540920 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.629597902 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.629606962 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.629981995 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.629997015 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.653352022 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.653461933 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.653528929 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.653654099 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.653779984 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.653804064 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.654325962 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.654737949 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.655661106 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.655875921 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.657120943 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.657120943 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.657221079 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.662862062 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.663093090 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.663450003 CEST49874443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.663459063 CEST44349874149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.668109894 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.668478012 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.669554949 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.669888020 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.670875072 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.670978069 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.670995951 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.671717882 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.671854973 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.672015905 CEST49871443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.672024965 CEST44349871104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.695744991 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.695754051 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.700103045 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.700345039 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.700573921 CEST49872443192.168.11.20149.112.112.112
                                                                                                                                            Apr 16, 2023 15:18:32.700582981 CEST44349872149.112.112.112192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.724406004 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.724414110 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.725620031 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.725761890 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.725963116 CEST49873443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:32.725971937 CEST44349873104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:33.680037022 CEST49839443192.168.11.202.23.209.26
                                                                                                                                            Apr 16, 2023 15:18:33.690341949 CEST443498392.23.209.26192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:33.690450907 CEST443498392.23.209.26192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:33.690710068 CEST49839443192.168.11.202.23.209.26
                                                                                                                                            Apr 16, 2023 15:18:33.690710068 CEST49839443192.168.11.202.23.209.26
                                                                                                                                            Apr 16, 2023 15:18:37.477447987 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.477546930 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.477749109 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.477999926 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.478045940 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.506004095 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.506555080 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.507097960 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.507615089 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.507723093 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.507791996 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.548314095 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.562161922 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.564490080 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.564686060 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:37.564981937 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.565213919 CEST49875443192.168.11.20104.18.12.173
                                                                                                                                            Apr 16, 2023 15:18:37.565244913 CEST44349875104.18.12.173192.168.11.20
                                                                                                                                            TimestampSource PortDest PortSource IPDest IP
                                                                                                                                            Apr 16, 2023 15:17:59.457215071 CEST6142953192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:17:59.467250109 CEST53614291.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:05.483771086 CEST6310753192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:05.493206024 CEST53631071.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.093760014 CEST5051653192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST53505161.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.173468113 CEST6101453192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:07.174340963 CEST5756853192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST53610141.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST53575681.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.557394028 CEST5386653192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:32.557491064 CEST5124453192.168.11.201.1.1.1
                                                                                                                                            Apr 16, 2023 15:18:32.566744089 CEST53538661.1.1.1192.168.11.20
                                                                                                                                            Apr 16, 2023 15:18:32.567195892 CEST53512441.1.1.1192.168.11.20
                                                                                                                                            TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                                                                                                                                            Apr 16, 2023 15:17:59.457215071 CEST192.168.11.201.1.1.10x7330Standard query (0)rentry.coA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:05.483771086 CEST192.168.11.201.1.1.10x645fStandard query (0)ipinfo.ioA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.093760014 CEST192.168.11.201.1.1.10xf73fStandard query (0)canary.discord.comA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.173468113 CEST192.168.11.201.1.1.10x1eeeStandard query (0)discord.comA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.174340963 CEST192.168.11.201.1.1.10x50d6Standard query (0)cdn.discordapp.comA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.557394028 CEST192.168.11.201.1.1.10x5f4fStandard query (0)chrome.cloudflare-dns.comA (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.557491064 CEST192.168.11.201.1.1.10xf91eStandard query (0)dns.quad9.netA (IP address)IN (0x0001)false
                                                                                                                                            TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                                                                                                                                            Apr 16, 2023 15:17:59.467250109 CEST1.1.1.1192.168.11.200x7330No error (0)rentry.co198.251.88.130A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:05.493206024 CEST1.1.1.1192.168.11.200x645fNo error (0)ipinfo.io34.117.59.81A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST1.1.1.1192.168.11.200xf73fNo error (0)canary.discord.com162.159.136.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST1.1.1.1192.168.11.200xf73fNo error (0)canary.discord.com162.159.137.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST1.1.1.1192.168.11.200xf73fNo error (0)canary.discord.com162.159.135.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST1.1.1.1192.168.11.200xf73fNo error (0)canary.discord.com162.159.138.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.103818893 CEST1.1.1.1192.168.11.200xf73fNo error (0)canary.discord.com162.159.128.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST1.1.1.1192.168.11.200x1eeeNo error (0)discord.com162.159.128.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST1.1.1.1192.168.11.200x1eeeNo error (0)discord.com162.159.137.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST1.1.1.1192.168.11.200x1eeeNo error (0)discord.com162.159.136.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST1.1.1.1192.168.11.200x1eeeNo error (0)discord.com162.159.135.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.182637930 CEST1.1.1.1192.168.11.200x1eeeNo error (0)discord.com162.159.138.232A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST1.1.1.1192.168.11.200x50d6No error (0)cdn.discordapp.com162.159.130.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST1.1.1.1192.168.11.200x50d6No error (0)cdn.discordapp.com162.159.135.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST1.1.1.1192.168.11.200x50d6No error (0)cdn.discordapp.com162.159.129.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST1.1.1.1192.168.11.200x50d6No error (0)cdn.discordapp.com162.159.133.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:07.183022022 CEST1.1.1.1192.168.11.200x50d6No error (0)cdn.discordapp.com162.159.134.233A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.566744089 CEST1.1.1.1192.168.11.200x5f4fNo error (0)chrome.cloudflare-dns.com104.18.12.173A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.566744089 CEST1.1.1.1192.168.11.200x5f4fNo error (0)chrome.cloudflare-dns.com104.18.13.173A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.567195892 CEST1.1.1.1192.168.11.200xf91eNo error (0)dns.quad9.net149.112.112.112A (IP address)IN (0x0001)false
                                                                                                                                            Apr 16, 2023 15:18:32.567195892 CEST1.1.1.1192.168.11.200xf91eNo error (0)dns.quad9.net9.9.9.9A (IP address)IN (0x0001)false
                                                                                                                                            • chrome.cloudflare-dns.com
                                                                                                                                            • dns.quad9.net
                                                                                                                                            Session IDSource IPSource PortDestination IPDestination PortProcess
                                                                                                                                            0192.168.11.2049871104.18.12.173443C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            TimestampkBytes transferredDirectionData
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTPOST /dns-query HTTP/1.1
                                                                                                                                            Host: chrome.cloudflare-dns.com
                                                                                                                                            Connection: keep-alive
                                                                                                                                            Content-Length: 128
                                                                                                                                            Accept: application/dns-message
                                                                                                                                            Accept-Language: *
                                                                                                                                            User-Agent: Chrome
                                                                                                                                            Accept-Encoding: identity
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom)TP
                                                                                                                                            2023-04-16 13:18:32 UTC1INHTTP/1.1 200 OK
                                                                                                                                            Server: cloudflare
                                                                                                                                            Date: Sun, 16 Apr 2023 13:18:32 GMT
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            Connection: close
                                                                                                                                            Access-Control-Allow-Origin: *
                                                                                                                                            Content-Length: 468
                                                                                                                                            CF-RAY: 7b8cb6fe1ee49a35-FRA
                                                                                                                                            2023-04-16 13:18:32 UTC1INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 f9 00 04 8e fa b8 c3 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom)


                                                                                                                                            Session IDSource IPSource PortDestination IPDestination PortProcess
                                                                                                                                            1192.168.11.2049872149.112.112.112443C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            TimestampkBytes transferredDirectionData
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTPOST /dns-query HTTP/1.1
                                                                                                                                            Host: dns.quad9.net
                                                                                                                                            Connection: keep-alive
                                                                                                                                            Content-Length: 128
                                                                                                                                            Accept: application/dns-message
                                                                                                                                            Accept-Language: *
                                                                                                                                            User-Agent: Chrome
                                                                                                                                            Accept-Encoding: identity
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom)TP
                                                                                                                                            2023-04-16 13:18:32 UTC2INHTTP/1.1 200 OK
                                                                                                                                            Date: Sun, 16 Apr 2023 13:18:32 GMT
                                                                                                                                            Connection: close
                                                                                                                                            Content-Length: 60
                                                                                                                                            Server: h2o/dnsdist
                                                                                                                                            content-type: application/dns-message
                                                                                                                                            cache-control: max-age=226
                                                                                                                                            2023-04-16 13:18:32 UTC2INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 e2 00 04 8e fa cb 63 00 00 29 04 d0 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcomc)


                                                                                                                                            Session IDSource IPSource PortDestination IPDestination PortProcess
                                                                                                                                            2192.168.11.2049874149.112.112.112443C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            TimestampkBytes transferredDirectionData
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTPOST /dns-query HTTP/1.1
                                                                                                                                            Host: dns.quad9.net
                                                                                                                                            Connection: keep-alive
                                                                                                                                            Content-Length: 128
                                                                                                                                            Accept: application/dns-message
                                                                                                                                            Accept-Language: *
                                                                                                                                            User-Agent: Chrome
                                                                                                                                            Accept-Encoding: identity
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            2023-04-16 13:18:32 UTC0OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom)TP
                                                                                                                                            2023-04-16 13:18:32 UTC1INHTTP/1.1 200 OK
                                                                                                                                            Date: Sun, 16 Apr 2023 13:18:32 GMT
                                                                                                                                            Connection: close
                                                                                                                                            Content-Length: 60
                                                                                                                                            Server: h2o/dnsdist
                                                                                                                                            content-type: application/dns-message
                                                                                                                                            cache-control: max-age=132
                                                                                                                                            2023-04-16 13:18:32 UTC1INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 84 00 04 ac d9 a8 43 00 00 29 02 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcomC)


                                                                                                                                            Session IDSource IPSource PortDestination IPDestination PortProcess
                                                                                                                                            3192.168.11.2049873104.18.12.173443C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            TimestampkBytes transferredDirectionData
                                                                                                                                            2023-04-16 13:18:32 UTC1OUTPOST /dns-query HTTP/1.1
                                                                                                                                            Host: chrome.cloudflare-dns.com
                                                                                                                                            Connection: keep-alive
                                                                                                                                            Content-Length: 128
                                                                                                                                            Accept: application/dns-message
                                                                                                                                            Accept-Language: *
                                                                                                                                            User-Agent: Chrome
                                                                                                                                            Accept-Encoding: identity
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            2023-04-16 13:18:32 UTC1OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 54 00 0c 00 50 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom)TP
                                                                                                                                            2023-04-16 13:18:32 UTC2INHTTP/1.1 200 OK
                                                                                                                                            Server: cloudflare
                                                                                                                                            Date: Sun, 16 Apr 2023 13:18:32 GMT
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            Connection: close
                                                                                                                                            Access-Control-Allow-Origin: *
                                                                                                                                            Content-Length: 468
                                                                                                                                            CF-RAY: 7b8cb6fe7ab55c50-FRA
                                                                                                                                            2023-04-16 13:18:32 UTC2INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 03 77 77 77 07 67 73 74 61 74 69 63 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 e3 00 04 8e fa ba 23 00 00 29 04 d0 00 00 00 00 01 98 00 0c 01 94 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: wwwgstaticcom#)


                                                                                                                                            Session IDSource IPSource PortDestination IPDestination PortProcess
                                                                                                                                            4192.168.11.2049875104.18.12.173443C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            TimestampkBytes transferredDirectionData
                                                                                                                                            2023-04-16 13:18:37 UTC3OUTPOST /dns-query HTTP/1.1
                                                                                                                                            Host: chrome.cloudflare-dns.com
                                                                                                                                            Connection: keep-alive
                                                                                                                                            Content-Length: 128
                                                                                                                                            Accept: application/dns-message
                                                                                                                                            Accept-Language: *
                                                                                                                                            User-Agent: Chrome
                                                                                                                                            Accept-Encoding: identity
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            2023-04-16 13:18:37 UTC3OUTData Raw: 00 00 01 00 00 01 00 00 00 00 00 01 04 61 6a 61 78 0a 67 6f 6f 67 6c 65 61 70 69 73 03 63 6f 6d 00 00 01 00 01 00 00 29 10 00 00 00 00 00 00 50 00 0c 00 4c 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: ajaxgoogleapiscom)PL
                                                                                                                                            2023-04-16 13:18:37 UTC3INHTTP/1.1 200 OK
                                                                                                                                            Server: cloudflare
                                                                                                                                            Date: Sun, 16 Apr 2023 13:18:37 GMT
                                                                                                                                            Content-Type: application/dns-message
                                                                                                                                            Connection: close
                                                                                                                                            Access-Control-Allow-Origin: *
                                                                                                                                            Content-Length: 468
                                                                                                                                            CF-RAY: 7b8cb71cb8e69131-FRA
                                                                                                                                            2023-04-16 13:18:37 UTC3INData Raw: 00 00 81 80 00 01 00 01 00 00 00 01 04 61 6a 61 78 0a 67 6f 6f 67 6c 65 61 70 69 73 03 63 6f 6d 00 00 01 00 01 c0 0c 00 01 00 01 00 00 00 48 00 04 8e fa b5 ea 00 00 29 04 d0 00 00 00 00 01 94 00 0c 01 90 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
                                                                                                                                            Data Ascii: ajaxgoogleapiscomH)


                                                                                                                                            Click to jump to process

                                                                                                                                            Click to jump to process

                                                                                                                                            Click to dive into process behavior distribution

                                                                                                                                            Click to jump to process

                                                                                                                                            Target ID:1
                                                                                                                                            Start time:15:17:05
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            Wow64 process (32bit):true
                                                                                                                                            Commandline:C:\Users\user\Desktop\GalacticShooter (3).exe
                                                                                                                                            Imagebase:0x400000
                                                                                                                                            File size:64791841 bytes
                                                                                                                                            MD5 hash:83024EA067AB552D39FFDB6E12A30817
                                                                                                                                            Has elevated privileges:true
                                                                                                                                            Has administrator privileges:true
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Reputation:low

                                                                                                                                            Target ID:5
                                                                                                                                            Start time:15:17:45
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            Wow64 process (32bit):false
                                                                                                                                            Commandline:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            Imagebase:0x7ff76e7c0000
                                                                                                                                            File size:146870272 bytes
                                                                                                                                            MD5 hash:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            Has elevated privileges:true
                                                                                                                                            Has administrator privileges:true
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Antivirus matches:
                                                                                                                                            • Detection: 0%, ReversingLabs
                                                                                                                                            Reputation:low

                                                                                                                                            Target ID:6
                                                                                                                                            Start time:15:17:59
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            Wow64 process (32bit):false
                                                                                                                                            Commandline:"C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=gpu-process --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=1708 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
                                                                                                                                            Imagebase:0x7ff76e7c0000
                                                                                                                                            File size:146870272 bytes
                                                                                                                                            MD5 hash:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            Has elevated privileges:false
                                                                                                                                            Has administrator privileges:false
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Reputation:low

                                                                                                                                            Target ID:7
                                                                                                                                            Start time:15:17:58
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Windows\explorer.exe
                                                                                                                                            Wow64 process (32bit):false
                                                                                                                                            Commandline:C:\Windows\Explorer.EXE
                                                                                                                                            Imagebase:0x7ff6201a0000
                                                                                                                                            File size:4849904 bytes
                                                                                                                                            MD5 hash:5EA66FF5AE5612F921BC9DA23BAC95F7
                                                                                                                                            Has elevated privileges:false
                                                                                                                                            Has administrator privileges:false
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Reputation:high

                                                                                                                                            Target ID:8
                                                                                                                                            Start time:15:18:13
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            Wow64 process (32bit):false
                                                                                                                                            Commandline:"C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --mojo-platform-channel-handle=2044 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
                                                                                                                                            Imagebase:0x7ff76e7c0000
                                                                                                                                            File size:146870272 bytes
                                                                                                                                            MD5 hash:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            Has elevated privileges:true
                                                                                                                                            Has administrator privileges:true
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Reputation:low

                                                                                                                                            Target ID:10
                                                                                                                                            Start time:15:18:27
                                                                                                                                            Start date:16/04/2023
                                                                                                                                            Path:C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe
                                                                                                                                            Wow64 process (32bit):false
                                                                                                                                            Commandline:"C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\GalacticShooter.exe" --type=renderer --user-data-dir="C:\Users\user\AppData\Roaming\GalacticShooter" --app-path="C:\Users\user\AppData\Local\Temp\2ONWRcI5GZ6reM4AjlGk3S9hVCy\resources\app.asar" --enable-sandbox --lang=en-US --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=6247950226 --mojo-platform-channel-handle=2372 --field-trial-handle=1844,i,6307425494836760308,6469683545546901886,131072 --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:1
                                                                                                                                            Imagebase:0x7ff76e7c0000
                                                                                                                                            File size:146870272 bytes
                                                                                                                                            MD5 hash:93BD0AE322D0293B5AFF20C25B1F71A2
                                                                                                                                            Has elevated privileges:false
                                                                                                                                            Has administrator privileges:false
                                                                                                                                            Programmed in:C, C++ or other language
                                                                                                                                            Reputation:low

                                                                                                                                            No disassembly