Threat Database Trojans Trojan.Kryptik.GZA

Trojan.Kryptik.GZA

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 24,780
Threat Level: 80 % (High)
Infected Computers: 4
First Seen: July 21, 2023
Last Seen: November 12, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Kryptik.GZA
Signature status: No Signature

Known Samples

MD5: 7f90a7e669c56e4e1cdcec81c69f6fd0
SHA1: db71a3f0af3441c6f2edc85ff5b9e7202fa2a6cd
SHA256: 7125FE9D043C785D97D5ECF8AC780AE3635A8F9B5A1AD65102B80BE6E63E0430
File Size: 8.01 MB, 8011776 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 550
Potentially Malicious Blocks: 17
Whitelisted Blocks: 530
Unknown Blocks: 3

Visual Map

0 0 x 0 0 0 0 0 x 0 x x 0 0 0 0 0 x x 0 x 0 x 0 0 x ? x x 0 0 0 x x x x x x ? ? 0 2 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 1 1 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 1 0 1 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 1 0 0 1 1 2 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.XSDE
  • Downloader.Agent.OL

Files Modified

File Attributes
\device\namedpipe\srvsvc Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\_bz2.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\_lzma.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\_sqlite3.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\_tkinter.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\python38.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\rebuild.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\sqlite3.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl86t.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl8\8.4\platform-1.0.14.tm Generic Write,Read Attributes
Show More
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl8\8.4\platform\shell-1.1.4.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl8\8.5\msgcat-1.6.1.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl8\8.5\tcltest-2.5.0.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl8\8.6\http-2.9.0.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\auto.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\clock.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\ascii.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\big5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1250.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1251.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1252.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1253.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1254.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1255.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1256.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1257.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp1258.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp437.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp737.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp775.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp850.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp852.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp855.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp857.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp860.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp861.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp862.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp863.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp864.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp865.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp866.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp869.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp874.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp932.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp936.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp949.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\cp950.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\dingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\ebcdic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\euc-cn.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\euc-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\euc-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\gb12345.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\gb1988.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\gb2312-raw.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\gb2312.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso2022-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso2022-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso2022.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-1.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-10.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-13.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-14.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-15.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-16.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-2.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-3.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-4.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-6.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-7.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-8.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\iso8859-9.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\jis0201.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\jis0208.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\jis0212.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\koi8-r.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\koi8-u.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\ksc5601.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\maccenteuro.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\maccroatian.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\maccyrillic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macdingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macgreek.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\maciceland.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macjapan.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macroman.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macromania.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macthai.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macturkish.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\macukraine.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\shiftjis.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\symbol.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\encoding\tis-620.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\history.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\http1.0\http.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\http1.0\pkgindex.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\init.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\af.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\af_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ar_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ar_jo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ar_lb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ar_sy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\bg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\bn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\bn_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\cs.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\da.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\de.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\de_at.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\de_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\el.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_au.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_bw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_hk.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_nz.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_ph.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_sg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\en_zw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\eo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_bo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_cl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_co.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_cr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_do.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_ec.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_gt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_hn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_mx.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_ni.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_pa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_pe.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_pr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_py.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_sv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_uy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\es_ve.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\et.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\eu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\eu_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fa_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fa_ir.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fo_fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fr_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fr_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\fr_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ga.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ga_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\gl_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\gv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\gv_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\he.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\hi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\hi_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\hr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\hu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\id_id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\is.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\it.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\it_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ja.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kl_gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ko.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ko_kr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kok.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kok_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\kw_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\lt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\lv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\mk.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\mr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\mr_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ms.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\ms_my.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\mt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\nb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\nl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\nl_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\nn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\onefile_8312_134074453657171971\tcl\msgs\pl.msg Generic Write,Read Attributes

730 additional files are not displayed above.

Windows API Usage

Category API
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • CreateProcess

Shell Command Execution

C:\Users\Zseljkcv\AppData\Local\Temp\onefile_8312_134074453657171971\ReBuild.exe "c:\users\user\downloads\db71a3f0af3441c6f2edc85ff5b9e7202fa2a6cd_0008011776"

Trending

Most Viewed

Loading...