PUP.MSIL.Brute.AAFA

The detection of PUP.MSIL.Brute.AAFA indicates that your system has been compromised by a potentially unwanted program (PUP). This type of threat is designed to perform unwanted actions on your computer, often without your knowledge or consent. It's essential to understand the nature of this threat and take immediate action to remove it from your system to prevent further damage.

What Is PUP.MSIL.Brute.AAFA?

PUP.MSIL.Brute.AAFA is a type of malware that falls under the category of potentially unwanted programs. These programs are often bundled with other software or downloaded from untrusted sources, and they can cause a range of problems on your computer. While they may not be as malicious as other types of malware, PUPs can still compromise your system's security and performance.

How PUP.MSIL.Brute.AAFA Operates

PUP.MSIL.Brute.AAFA, like other PUPs, operates by exploiting vulnerabilities in your system or using social engineering tactics to trick you into installing it. Once installed, it can perform various unwanted actions, such as displaying unwanted ads, collecting your personal data, or installing additional malware. It's crucial to be cautious when downloading software or clicking on links from untrusted sources to avoid falling victim to these types of threats.

Symptoms of Infection

If your system is infected with PUP.MSIL.Brute.AAFA, you may notice various symptoms, including slow system performance, unwanted ads or pop-ups, and unfamiliar programs or toolbars installed on your computer. You may also experience browser redirects, and your search engine or homepage may be changed without your consent. These symptoms can be frustrating and compromise your online security, making it essential to remove the threat as soon as possible.

How to Remove PUP.MSIL.Brute.AAFA

  1. Boot your computer in Safe Mode with Networking to prevent the malware from loading and to allow you to download and install removal tools.
  2. Perform a full scan of your system using a reputable anti-malware tool, such as SpyHunter, to detect and remove all instances of the malware.
  3. Uninstall any suspicious programs or applications that you don't recognize or that were installed without your consent.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any unwanted extensions or add-ons.
  5. Reboot your computer and perform another full scan to ensure that the malware has been completely removed.

Conclusion

Removing PUP.MSIL.Brute.AAFA from your system requires careful attention to detail and a thorough understanding of the threat. By following the steps outlined above and being cautious when downloading software or clicking on links, you can help protect your system from similar threats in the future. Remember to always use reputable anti-malware tools and to keep your operating system and software up to date to ensure the best possible protection against malware and other online threats.

Analysis Report

General information

Family Name: PUP.MSIL.Brute.AAFA
Packers: UPX
Signature status: Modified signature

Known Samples

MD5: 35706ec6826fbc8f51c8aa102c01f5eb
SHA1: 926800ff24ce239c31ddbc60e20d5bdcb632ceca
SHA256: 1E45C786849296ACDC68C59900198C39B04BD64BC723B603683F46D1DDF50A68
File Size: 1.16 MB, 1156680 bytes
MD5: ee987d52f28f0a1b38aad6f456eac43f
SHA1: 30161195b71231c5a2a902f35e35b9c0496a77ba
SHA256: 6486A4D836E295235637525B33BAD4B34991A6F87B8A22E60B1431E074621766
File Size: 1.16 MB, 1156680 bytes
MD5: 79610060d0a65fc266c9f76a8bd199ca
SHA1: 01c7bbbff1c4b1cbdca74f24622ac2b62a868087
SHA256: 5D1DDE722CF1BC57952C6BAEDDCDDC521911AD71A750D2AA11D3C3BE5833FE39
File Size: 1.16 MB, 1156680 bytes
MD5: a7ea590e114d4ccb75d4d6b5d9186eb1
SHA1: c3eea7c5c617101b2efcfeb05ed03759c80da1fc
SHA256: C6497B439416F154D05D3CF8AD02637406C92BBED0B6E2D42308F6BCF95701A1
File Size: 1.16 MB, 1156680 bytes
MD5: 53b11574d861bca9d977c43d535397c0
SHA1: 50f47a4a1ce8344d8c99720451cb5a11642e6774
SHA256: 9AB9C54DA47109D7A2E0F1E93D8A07BAFE4AD7DE6C18E14205377E3715E38516
File Size: 1.16 MB, 1156680 bytes
Show More
MD5: 6946944a243884d59c825f439d6ee0f0
SHA1: 247908b0621aae09f0ca8db9d87662eadfa15520
SHA256: 9D1AA477B53DEB78B7135A5758B036DF4B63312947BDD0A53A7CD3F318FC7B8D
File Size: 1.16 MB, 1156680 bytes
MD5: b8f8b1bd67be7c7d0c30b2ca716346a3
SHA1: d465762614668122569cd7ea00443c1850203fb1
SHA256: 6E66166E7A45DFB460B79062A2B5C47C1533D1356ADE93B79CD201551E173617
File Size: 1.16 MB, 1156680 bytes
MD5: e94fa41b58d6384a68d8df86333b6d1a
SHA1: 67056749b37852d53a06b9a37e6512a1dd74002c
SHA256: 09B96B54DAEF0AD55D7A83B97DCE17D6482973B691D6D4839FFD40296CAA71DC
File Size: 1.16 MB, 1156680 bytes
MD5: 18cbe6edd2d209d0338affa1914f3d97
SHA1: 1ac11a0892114bce68a5c87d8f9c16394a9df468
SHA256: 5303F1C6999A32CBD84FC8FA4D6C844F3F71DCD03A6FE1D8D5041FB88D763FA0
File Size: 1.16 MB, 1156680 bytes
MD5: f6685e4a6b369f450ad14e14a85ece30
SHA1: 116eb1c29ee6ca4f0c7a855bd8ba9cf3e4fb4283
SHA256: 77031F81D2F1033BFBAD62DD524D0DF61B08B17E267BAF2C6D7C18EF03AC5F33
File Size: 1.16 MB, 1156680 bytes
MD5: ca513bb7f5dee14cb2f8b20981737105
SHA1: 23b916cd7e7a2b4c3949a92fccb2cc8ee505dfae
SHA256: 725D7DC37301EA92A49E94379E7585CB841B52B9A6AFC910766FC4226C23E6F2
File Size: 1.16 MB, 1156680 bytes
MD5: bba4cf4e44ce3161490ae8fa82546411
SHA1: 70f588339202002f1a76cf8cd054de5ffe0f3c33
SHA256: A0511455E7C82CF9D8757348CBD953469228A6F074F894F0772AA5BCAD9D6CDB
File Size: 1.16 MB, 1156680 bytes
MD5: e120948bbffef91d2c2ee0224b3c3522
SHA1: 5819430f2798e056def15d75292e610c9971a64b
SHA256: C15DF837399339B5CF8ED4EE08D3CD70A5947B15B48C0C860E846A318B58910D
File Size: 1.16 MB, 1156680 bytes
MD5: 7b9b3550118f530b1b59b206cb72e535
SHA1: 1110a441042b4ffa7dd825ca75e8b3a06b6bb6a8
SHA256: E398027D4B3EEE4893727EB330293028AA0A78AB1BD2D2D2B43226D9CE81A7A4
File Size: 1.16 MB, 1156680 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has been packed
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name GOG Sp. z o.o.
File Description GWENT: The Witcher Card Game
File Version 2.0.0.2
Internal Name GOG Galaxy - Gwent Installer.exe
Legal Copyright (C) GOG Sp. z o.o. 2020
Product Name GWENT: The Witcher Card Game
Product Version 2.0.0.2

File Traits

  • HighEntropy
  • Installer Version
  • packed
  • x86

Block Information

Total Blocks: 3,276
Potentially Malicious Blocks: 283
Whitelisted Blocks: 2,993
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x 0 0 0 x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 x x x x x 0 x x x x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x 0 0 x x x x x 0 0 x x x 0 0 x x 0 0 x 0 0 0 0 0 0 x 0 x x x x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 x x 0 0 x 0 0 0 x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 0 x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 0 0 x x x x 0 0 0 0 0 x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x x x 0 0 0 0 0 x x x x 0 0 x 0 0 x 0 0 0 x x 0 0 x 0 0 0 0 0 0 0 0 x 0 0 0 0 x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x 0 x x x x x x x x 0 x 0 x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x 1 0 x x 0 x x 0 x 0 x x 0 0 0 0 x 0 0 0 0 x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 0 0 x x 0 0 0 0 x x 0 0 0 x x x x x x x x x 0 x 0 0 x x x x 0 x x x x x x x x x x x 0 x x 0 0 x 0 x x x 0 x 0 0 0 0 x 0 0 0 x x 0 0 0 0 x x 0 x 0 0 0 0 0 0 x x x x x x x 0 0 0 0 x 0 x 0 0 0 0 0 0 x x x 0 0 0 0 0 x 0 0 0 x x x 0 0 0 0 0 x x 0 0 0 0 0 x 0 x x 0 0 x 0 0 x 0 0 0 0 0 0 0 x x 0 0 0 x x x 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 1 1 1 0 0 0 1 0 0 0 1 0 1 0 0 0 0 1 1 1 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 1 0 1 1 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.LX
  • MSIL.Brute.AAC
  • MSIL.Brute.AAF
  • MSIL.Brute.AAFA
  • MSIL.Brute.AAR

Files Modified

File Attributes
c:\programdata\gog.com\galaxy\logs\installerbootstrapper.log Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
Show More
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_cayip\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_fldns\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_gwkko\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ipzim\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_ngbqq\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_oqnfh\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_qbrsp\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_rgrme\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vesgf\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_vgpqo\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\es-mx\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\es\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\fr\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\galaxyinstaller.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\galaxyinstaller.exe.config Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\icon.ico Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\icon.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\it\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\ja\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\ko\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\payload.base64 Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\payload.campaign Generic Write,Read Attributes
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\pl\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\pt-br\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\ru\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\zh-hant\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wclqf\zh\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\galaxyinstaller_wocqr\de\galaxywebinstaller.resources.dll Generic Read,Write Data,Write Attributes,Write extended,Append data

55 additional files are not displayed above.

Registry Modifications

Key::Value Data API Name
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::proxybypass  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::intranetname  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::uncasintranet  RegNtPreCreateKey
HKCU\software\microsoft\windows\currentversion\internet settings\zonemap::autodetect RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 ~� % xy* �/��Y�d�kP~� ��ރ�p��^�o���zee,Vs} kP~ ��1���7 ���ﺃee����1��fe��h�n RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 ,k�8��8tX��B�8 �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G6�^6�� RegNtPreCreateKey
Show More
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 -k�8��8tX��B�8 �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G6�^6�� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 -k�8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 .k8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 +k�8��8tX��B�8 �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G6�^6�� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 ,k�8��8tX��B�8 �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G6�^6�� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 �� xy�ރVs}0��h�n� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �k�tX� �v �Z xy ��T������5����Bx!wz#�#��%:�&� (�(X�*J+�[,��/9�/��1`1�1HO1�D5�09ߔ<.:>3�@V�G�IH[uH�pI��J��N$R20U5�U_*V �X�`b.`�2b"hg�h�ri��k`k�ql(�n�Ao�o�wq�XrnJ RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �k�tX� �v �Z xy ��T������5����Bx!wz#�#��%:�&� (�(X�*J+�[,��/9�/��0P%1`1�1HO1�D5�09ߔ<.:>3�@V�G�IH[uH�pI��J��N$R20U5�U_*V �X�\te`b.`�2b"hg�h�ri��k`k�ql(�n�Ao�o�w RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �k�tX� �v �Z xy ��T������5����Bx!wz#�#��%:�&� (�(X�*J+�[,��/9�/��0P%1`1�1HO1�D5�09ߔ<.:>3�@V�G�IH[uH�pI��J��N$R20U5�U_*V �X�\te`b.`�2b"hg�h�ri��k`k�ql(�n�Ao�o�w RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 ,k�8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 -k8��8tX��B�8 �� �6 �v 5� �Z xy ��T�B�������������5����ee��Bx�< �!wz"Wc#�#��$kF$��%"�%:�%�&� &�x(�(X�)�`*J*9*�"*�^*�h+�[,��/9�/��0P%1`1�1HO1�D5�05�G RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 闪ȁ獖}偫~엦1dᵂċᵆċr֢ RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 Kku�B �� �v �� 7� �� ���T�B������%Bx�<�!$��%�&� '�!(�(X�(�) ;*J*9*�",=�1�1HO5,]5�G>��@V�@�*A��B F Fy�G�IH[uH�pM�lN$N�P@jR��X �_�zc�we0Te�hh�rj�bk�qq(q�XrnJr� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 Lk~�B �� �v �� 7� �� ���T�B������%Bx�<�!$��%�&� '�!(�(X�(�) ;*J*9*�",=�0P%1�1HO5,]5�G>��@V�@�*A��B F Fy�G�IH[uH�pM�lN$N�P@jR��X �\te_�zc�we0Te�hh�rj�bk�qq(q�X RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 鳪ȁ 砍yਪˣ鈯ˣ遙̃豤̃偫~অˣ炑̃龡^濖̃賬̃攘ťE獖}$偫~$엦1 鰚²਷ˣ邯̃뫯ʃe"ꙥž֢ᐊ엦1-¶fꙥžg֢h RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �m��8tXz�jg�B�8 �� �6 �v z �Z xy �� �a��T�B�����������5���� +Bx�<��5�R �!wz"Wc#�#��$��%:�%`�%�&� &�-(�(X�)E)�`*J*9*�"+�[,��-!R/9�/��0P%1`1�1HO RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 �� * �/��Y�d�� ��ރ�p��^�o�eeVs}kP~��1��7 ���ﺃee����1!��fe��i.e��r;�v RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �mb� �� �v xy ��T������%����Bx#��(�(X�(�)�`*J*9*�"0P%1�1HO5,]@V�G�IH�pJ��N$N�X�\teb"hc�wc�zh�ri��j�bk`k�ql(�lR q�XrnJr�BsU�u�~vy�w�ny�9~D���P��jI�x������7�M�b: RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 �  xy* �/��Y�d�kP~� ��ރ�p$��^�o�eeSVs}$kP~$��1B��7 ���ﺃe"e��� ��1-��fe��g� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �m�8��8z�jg�B�8 �� �6 �v z �Z xy �� �a��T�B�����������5���� +Bx�<��5�R �!wz"Wc#�#��$kF$��%:�%`�%�&� &�-(�(X�)E)�`*J*9*�"+�[,��-!R/9�/��0P%1`1� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 陌ȁ獖} RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 Rl* �v����(�0P%1`1�1HO@V�A��H[u\te_�zb"hk`k�ql(�w�n{b��P��x������7�M�����������Rc�j��m�Ù��IV����$�8წ���&M�(!�^��j��=�S/�B1_T�Vw�`�V�R���3��%�������AE��D�� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 � * �/��Y�d�� ��ރ�p��^�o�gVs} kP~ ��1��7 ���ﺃee����1��ie��r0�ve�� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 n�8�tX�jg�8 �� �v �Z xy ����T�������dc�%���5����3bBx�<��#�#��$kF&� &�-(�(X�(�)E)�`*J*9*�"+�[-!R0P%1`1�1HO1�D5,]9ߔ=�@V�A��B��G�IH[uH�pI��J��K��N$N� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 ��  xy* �/��Y�d�kP~� ��ރ�p*��^�o�eebVs}EkP~E��1B��7 ���ﺃePe���"D��1X��fe��g� RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 �m8��8tXz�jg�B�8 �� �6 �v z �Z xy �� �a��T�B�����������5���� +Bx�<��5�R �!wz"Wc#�#��$kF$��%:�%`�%�&� &�-(�(X�)E)�`*J*9*�"+�[,=�,��-!R/9�/��0P% RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc3475 陽ȁ ਪˣ鈯ˣ遙̃豤̃偫~অˣ炑̃ 龡^濖̃賬̃攘ťb獖} 偫~ 엦1਷ˣ邯̃뫯ʃe*ꙥž㐚엦1(¶f ꙥžiôꙥžpꙥžrw֢ RegNtPreCreateKey
HKLM\software\microsoft\windows nt\currentversion\notifications\data::418a073aa3bc1c75 %m�8�1tXjg�8 �� �6 �v ����T������1��dc�%��3bBx���R �7#��$kF%`�&� &�-'�(�(X�(�)A)�`*J*9*�"+��-!R0P%1`1�1HO5,]=�@V�A��B��G�IH[uH�pH��I��K��N$N�U_*X�. RegNtPreCreateKey

Windows API Usage

Category API
Network Urlomon
  • URLDownloadToFile
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Process Manipulation Evasion
  • NtUnmapViewOfSection
  • ReadProcessMemory
Process Shell Execute
  • CreateProcess
  • ShellExecuteEx
Syscall Use
  • ntdll.dll!NtAlertThreadByThreadId
  • ntdll.dll!NtAlpcSendWaitReceivePort
  • ntdll.dll!NtClearEvent
  • ntdll.dll!NtClose
  • ntdll.dll!NtCreateEvent
  • ntdll.dll!NtCreateMutant
  • ntdll.dll!NtCreatePrivateNamespace
  • ntdll.dll!NtCreateSection
  • ntdll.dll!NtCreateThreadEx
  • ntdll.dll!NtDuplicateObject
Show More
  • ntdll.dll!NtEnumerateKey
  • ntdll.dll!NtEnumerateValueKey
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtMapViewOfSection
  • ntdll.dll!NtOpenDirectoryObject
  • ntdll.dll!NtOpenEvent
  • ntdll.dll!NtOpenFile
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtOpenKeyEx
  • ntdll.dll!NtOpenProcess
  • ntdll.dll!NtOpenProcessToken
  • ntdll.dll!NtOpenSection
  • ntdll.dll!NtOpenThreadToken
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryAttributesFile
  • ntdll.dll!NtQueryDefaultLocale
  • ntdll.dll!NtQueryDirectoryFileEx
  • ntdll.dll!NtQueryFullAttributesFile
  • ntdll.dll!NtQueryInformationFile
  • ntdll.dll!NtQueryInformationJobObject
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryKey
  • ntdll.dll!NtQueryLicenseValue
  • ntdll.dll!NtQueryPerformanceCounter
  • ntdll.dll!NtQuerySecurityAttributesToken
  • ntdll.dll!NtQuerySecurityObject
  • ntdll.dll!NtQuerySystemInformation
  • ntdll.dll!NtQuerySystemInformationEx
  • ntdll.dll!NtQueryValueKey
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtQueryVolumeInformationFile
  • ntdll.dll!NtQueryWnfStateData
  • ntdll.dll!NtReadFile
  • ntdll.dll!NtReadRequestData
  • ntdll.dll!NtReleaseMutant
  • ntdll.dll!NtReleaseWorkerFactoryWorker
  • ntdll.dll!NtResumeThread
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationKey
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationThread
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtSubscribeWnfStateChange
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtTraceControl
  • ntdll.dll!NtUnmapViewOfSection
  • ntdll.dll!NtWaitForAlertByThreadId
  • ntdll.dll!NtWaitForSingleObject
  • ntdll.dll!NtWaitForWorkViaWorkerFactory
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWorkerFactoryWorkerReady
  • ntdll.dll!NtWriteFile
  • UNKNOWN

Shell Command Execution

C:\Users\Uvaakdds\AppData\Local\Temp\GalaxyInstaller_GWKKo\GalaxyInstaller.exe "C:\Users\Uvaakdds\AppData\Local\Temp\GalaxyInstaller_GWKKo\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Uvaakdds\AppData\Local\Temp\GalaxyInstaller_GWKKo\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Cwxsqzxx\AppData\Local\Temp\GalaxyInstaller_flDNS\GalaxyInstaller.exe "C:\Users\Cwxsqzxx\AppData\Local\Temp\GalaxyInstaller_flDNS\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Cwxsqzxx\AppData\Local\Temp\GalaxyInstaller_flDNS\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Ntbrzcsy\AppData\Local\Temp\GalaxyInstaller_ipzim\GalaxyInstaller.exe "C:\Users\Ntbrzcsy\AppData\Local\Temp\GalaxyInstaller_ipzim\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
Show More
(NULL) C:\Users\Ntbrzcsy\AppData\Local\Temp\GalaxyInstaller_ipzim\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Uegqnqpj\AppData\Local\Temp\GalaxyInstaller_wClqf\GalaxyInstaller.exe "C:\Users\Uegqnqpj\AppData\Local\Temp\GalaxyInstaller_wClqf\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Uegqnqpj\AppData\Local\Temp\GalaxyInstaller_wClqf\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Ytsaanjd\AppData\Local\Temp\GalaxyInstaller_yogyV\GalaxyInstaller.exe "C:\Users\Ytsaanjd\AppData\Local\Temp\GalaxyInstaller_yogyV\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Ytsaanjd\AppData\Local\Temp\GalaxyInstaller_yogyV\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Ytlunzfd\AppData\Local\Temp\GalaxyInstaller_vESGf\GalaxyInstaller.exe "C:\Users\Ytlunzfd\AppData\Local\Temp\GalaxyInstaller_vESGf\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Ytlunzfd\AppData\Local\Temp\GalaxyInstaller_vESGf\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Cqnshvnr\AppData\Local\Temp\GalaxyInstaller_cAYiP\GalaxyInstaller.exe "C:\Users\Cqnshvnr\AppData\Local\Temp\GalaxyInstaller_cAYiP\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Cqnshvnr\AppData\Local\Temp\GalaxyInstaller_cAYiP\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Rszazxgq\AppData\Local\Temp\GalaxyInstaller_wvnpl\GalaxyInstaller.exe "C:\Users\Rszazxgq\AppData\Local\Temp\GalaxyInstaller_wvnpl\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Rszazxgq\AppData\Local\Temp\GalaxyInstaller_wvnpl\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Vgejkvod\AppData\Local\Temp\GalaxyInstaller_WOCQR\GalaxyInstaller.exe "C:\Users\Vgejkvod\AppData\Local\Temp\GalaxyInstaller_WOCQR\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Vgejkvod\AppData\Local\Temp\GalaxyInstaller_WOCQR\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Fmrpltrb\AppData\Local\Temp\GalaxyInstaller_oQNfH\GalaxyInstaller.exe "C:\Users\Fmrpltrb\AppData\Local\Temp\GalaxyInstaller_oQNfH\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Fmrpltrb\AppData\Local\Temp\GalaxyInstaller_oQNfH\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Kriahvxw\AppData\Local\Temp\GalaxyInstaller_rgRME\GalaxyInstaller.exe "C:\Users\Kriahvxw\AppData\Local\Temp\GalaxyInstaller_rgRME\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Kriahvxw\AppData\Local\Temp\GalaxyInstaller_rgRME\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Yuhjkyfl\AppData\Local\Temp\GalaxyInstaller_vGPQo\GalaxyInstaller.exe "C:\Users\Yuhjkyfl\AppData\Local\Temp\GalaxyInstaller_vGPQo\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Yuhjkyfl\AppData\Local\Temp\GalaxyInstaller_vGPQo\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Fmwqjvkm\AppData\Local\Temp\GalaxyInstaller_NgBqQ\GalaxyInstaller.exe "C:\Users\Fmwqjvkm\AppData\Local\Temp\GalaxyInstaller_NgBqQ\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Fmwqjvkm\AppData\Local\Temp\GalaxyInstaller_NgBqQ\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"
C:\Users\Jwlnbbyt\AppData\Local\Temp\GalaxyInstaller_qbRSp\GalaxyInstaller.exe "C:\Users\Jwlnbbyt\AppData\Local\Temp\GalaxyInstaller_qbRSp\GalaxyInstaller.exe" 1971477531 "GWENT: The Witcher Card Game"
(NULL) C:\Users\Jwlnbbyt\AppData\Local\Temp\GalaxyInstaller_qbRSp\GalaxyInstaller.exe 1971477531 "GWENT: The Witcher Card Game"

Related Posts

Trending

Most Viewed

Loading...