Threat Database Trojans Trojan.Agent.TJBR

Trojan.Agent.TJBR

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.Agent.TJBR
Signature status: No Signature

Known Samples

MD5: 3fdbce6158439c9bfbd5519e1ea76b55
SHA1: 8498a6b135485b44e6985fac3a16060a062bf414
SHA256: 751627659AC9EDDBB7C16CD606C5215D4A56B4513D0AAEAC9B9DE04E9087C81B
File Size: 9.13 MB, 9134844 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • HighEntropy
  • No Version Info
  • Py-installer
  • x86
  • zlib (In Overlay)
  • zlib overlay

Block Information

Total Blocks: 912
Potentially Malicious Blocks: 3
Whitelisted Blocks: 909
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 2 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 2 0 2 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 1 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 0 0 0 0 0 0 0 2 0 0 0 0 2 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 3 1 1 0 1 0 0 0 1 1 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Files Modified

File Attributes
c:\users\user\appdata\local\temp\_mei26322\_bz2.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_ctypes.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_decimal.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_hashlib.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_lzma.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_socket.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\auto.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\clock.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\ascii.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\big5.enc Generic Write,Read Attributes
Show More
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cns11643.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1250.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1251.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1252.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1253.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1254.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1255.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\_tcl_data\encoding\cp1256.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei26322\vcruntime140.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_bz2.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_ctypes.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_decimal.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_hashlib.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_lzma.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_socket.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\auto.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\clock.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\ascii.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\big5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cns11643.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1250.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1251.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1252.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1253.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1254.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1255.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1256.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1257.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp1258.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp437.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp737.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp775.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp850.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp852.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp855.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp857.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp860.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp861.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp862.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp863.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp864.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp865.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp866.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp869.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp874.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp932.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp936.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp949.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\cp950.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\dingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\ebcdic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\euc-cn.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\euc-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\euc-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\gb12345.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\gb1988.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\gb2312-raw.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\gb2312.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso2022-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso2022-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso2022.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-1.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-10.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-11.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-13.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-14.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-15.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-16.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-2.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-3.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-4.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-6.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-7.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-8.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\iso8859-9.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\jis0201.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\jis0208.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\jis0212.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\koi8-r.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\koi8-u.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\ksc5601.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\maccenteuro.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\maccroatian.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\maccyrillic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macdingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macgreek.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\maciceland.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macjapan.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macroman.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macromania.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macthai.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macturkish.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\macukraine.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\shiftjis.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\symbol.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\encoding\tis-620.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\history.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\http1.0\http.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\http1.0\pkgindex.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\init.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\af.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\af_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ar_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ar_jo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ar_lb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ar_sy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\bg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\bn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\bn_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\cs.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\da.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\de.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\de_at.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\de_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\el.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_au.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_bw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_hk.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_nz.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_ph.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_sg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\en_zw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\eo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_bo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_cl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_co.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_cr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_do.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_ec.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_gt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_hn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_mx.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_ni.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_pa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_pe.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_pr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_py.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_sv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_uy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\es_ve.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\et.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\eu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\eu_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fa_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fa_ir.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fo_fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fr_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fr_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\fr_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ga.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ga_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\gl_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\gv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\gv_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\he.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\hi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\hi_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\hr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\hu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\id_id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\is.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\it.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\it_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ja.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kl_gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ko.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\ko_kr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kok.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kok_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei36602\_tcl_data\msgs\kw_gb.msg Generic Write,Read Attributes

759 additional files are not displayed above.

Windows API Usage

Category API
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • CreateProcess

Shell Command Execution

c:\users\user\downloads\8498a6b135485b44e6985fac3a16060a062bf414_0009134844 "c:\users\user\downloads\8498a6b135485b44e6985fac3a16060a062bf414_0009134844"

Trending

Most Viewed

Loading...