Threat Database Trojans Trojan.Socelars.FA

Trojan.Socelars.FA

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 3,829
Threat Level: 80 % (High)
Infected Computers: 493
First Seen: October 13, 2024
Last Seen: April 21, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Socelars.FA
Signature status: No Signature

Known Samples

MD5: 9d092b1575365491d88039ae1c03db84
SHA1: 933012679bd86fee4f119705e1720a79e877df60
SHA256: 5C26C57539ED1D2D5FAB03609996D825E32367905186E2B5E68521242466F3C7
File Size: 4.53 MB, 4534218 bytes
MD5: d44be24f1147cc2627be249c6909d1f7
SHA1: f86a11aa6c28e7b765df372b878a3ce7e2c23a23
SHA256: B2838DFEBD15B9BFC2BB3530DD60584202ADB4CACB6D3FBAA66F88D636A09B77
File Size: 3.40 MB, 3404525 bytes
MD5: 5cd691d86a5cbde079f9dc56ea584d6f
SHA1: 3175f2ec9a1cb711c1a8da3d8156e064bbb9e794
SHA256: F02C065422AD72F2B546B34DCA776162B7B2D527D8D125C0980A0F53E0550152
File Size: 6.71 MB, 6712196 bytes
MD5: 8728851d8113e8e281dcfea0fa012dc2
SHA1: e95600020175ed96f9540cdc701f4b3b5094e462
SHA256: 3F71EE34D2AA7696250BA540AB480EBAB1E131CA2EBD5B6A240106A0E51543A1
File Size: 7.16 MB, 7156248 bytes
MD5: c3daa4db506a53046cdfa4e07c20f642
SHA1: 2b328630b05ed8a9405b46467586133a29ec7009
SHA256: A21DFE47AC6F18276CDD7AB78FD7EE9F4CC2D5055C7BB00940BBBE9A275423F4
File Size: 8.45 MB, 8454371 bytes
Show More
MD5: e2accd1d891b60900b705189e8ed68e6
SHA1: 1c1bb3e324d9aeb477b97563a3df5a8e090d5cc6
SHA256: 5E251769429776AAA700108CAE3B157BC33770D7182FE9049578EE674A9A2E2A
File Size: 9.89 MB, 9893803 bytes
MD5: 9f266f5ab0262b73c4dbe1cc42de0a19
SHA1: f65d74594ed9ea3e670d269be1c8cbb5b754e417
SHA256: D6A1D84F42D91B3775C60D1C2D7C4A408FFF1F87C6300EFC200BF403054A18BF
File Size: 3.97 MB, 3971549 bytes
MD5: c81a52de7ddb0749680d64bd518fa81b
SHA1: 73c265819b64be7c4d7bb7dafe3e5a1db2ff6b7c
SHA256: 2D7D176D8FF83E12EA890CAE63E1C072614C9A755F4B5951F5D6672E99AD804E
File Size: 4.55 MB, 4548783 bytes
MD5: dafbf437f89d8cd6e90a31723c5a670c
SHA1: 849f9087834fb466bc004cca5f592bdf4ed9554d
SHA256: A9F6EBEF263607C29D0FAC4D54E57FA80AEFCB2E2D3ACD7E58ADD0D50560A52B
File Size: 3.34 MB, 3344768 bytes
MD5: 44f0e224645f4fa5f542c5c56c9faaac
SHA1: 576d2b57f2076811978a80a632a7dc15b4b760f7
SHA256: 4394A4F6CEDCA16376ADDFECFA7E4211AD63FB9B822EDA6451F49E227E0036B6
File Size: 5.63 MB, 5628779 bytes
MD5: 4cbc6286ad0ec3cfc65b88efa82458d3
SHA1: 2c45a8908d4dbaad468825ce01bd72030657f965
SHA256: 689D6D89F451266BA9D33BAB33403097B5609BB8CC3E77B949B1E9FC1081CCD9
File Size: 9.18 MB, 9184657 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Show More

Windows PE Version Information

Name Value
Company Name
  • outfit7
  • PrimalKoopaPictures & NotSoDevy
File Description
  • All character belong to Nintendo.
  • outfit7
  • steam workshop mod downloader
  • Генератор файла сохранения для ПО (Проклятый омлет)
File Version
  • 2.3.0
  • 1.1
  • 1.0.0.0
  • 1
Legal Copyright
  • All character belong to Nintendo.
  • mcchiken505
  • Mr Viking
  • outfit7

File Traits

  • big overlay
  • x86

Block Information

Total Blocks: 3,637
Potentially Malicious Blocks: 1,185
Whitelisted Blocks: 2,452
Unknown Blocks: 0

Visual Map

x x x x x x x x x x 0 x x x 0 x x 0 x x x x x 0 0 0 x 0 x x 0 0 0 0 x x x x x x x 0 x x x x 0 x 0 0 0 x x x 0 0 0 0 x 0 0 0 x 0 0 x x x 0 0 x x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x x x x x 0 x 0 x x 0 x x x x x x 0 x x x x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x 0 x 0 x x x x x x x x x x x x x x x x x 0 0 x 0 x x 0 0 0 x 0 x x x 0 x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x 0 x 0 0 x 0 x x x x x x x x 0 x 0 0 0 0 0 x x x x x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x 0 0 0 0 0 0 0 x x x 0 0 x x x x x 0 x 0 0 0 x 0 0 x x 0 0 x x x x x x x x x x x x x x x x x x x x x 0 0 0 0 x x x 0 x x x 0 x x 0 x 0 x x 0 x x x x 0 0 0 0 x x 0 0 0 x x x x x x x x 0 x x 0 x 0 0 x x x 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 x 0 x x 0 x x x x x x x x x x x x x 0 0 x x x x 0 0 0 x x x x 0 0 0 0 0 0 0 x x x x 0 0 0 0 0 x 0 x 0 0 0 0 x x 0 0 0 0 0 0 x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 x x x 0 x 0 x x x x 0 x 0 x x x x x x x x x x x x x x x x x x x 0 x x 0 x x x 0 0 x x 0 x x x 0 x x x 0 x 0 0 x 0 x 0 0 0 x 0 0 0 0 0 0 0 0 x x 0 0 0 0 x 0 0 0 0 0 0 x 0 x 0 0 x x 0 x 0 0 x x 0 x 0 x x x 0 0 0 x 0 x 0 0 x 0 x 0 x x 0 0 x x 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x 0 x x x 0 x x x x 0 x 0 x 0 x 0 x x 0 x 0 0 x x x x x x 0 0 0 0 x 0 x 0 x 0 x x 0 x x 0 0 0 x x 0 x x x x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x 0 x x x x x x 0 0 x x 0 0 x x 0 0 x x 0 0 x x 0 0 x 0 x 0 x x x x x x x x x x 0 x 0 x 0 x 0 x x 0 x 0 x x x x x x x x 0 x 0 x x 0 x 0 x x 0 x x x 0 x x x 0 x x x x x x x x x x x x 0 x x x 0 x x 0 0 x 0 0 0 0 x x x x 0 x x x x x x x x x x x 0 x x x 0 x x x x x x 0 x x x x x x 0 x 0 x 0 0 x x 0 x x x 0 x 0 x x 0 x 0 x x x x x x x x 0 x 0 0 0 0 0 0 0 0 x x x x 0 x 0 0 x x 0 x x 0 x x 0 x 0 x x 0 0 0 x x x x x x x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x x x x 0 x x x 0 0 x 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 x x x x x 0 0 x x 0 x 0 x 0 x x x x x 0 0 0 0 x x 0 0 x x 0 x x 0 x 0 x 0 0 x 0 0 x 0 0 x 0 x x x x 0 x x x x x 0 x 0 x x x x x x 0 0 x x x 0 0 x 0 x 0 x x x 0 0 x 0 x x x x x x x 0 0 0 0 x 0 x 0 0 0 0 x x x x x x x 0 0 x 0 x x x x 0 0 0 0 0 x x x x x x 0 0 0 x x x x x x x x x x x x 0 0 0 x x x x x x x 0 x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x x 0 0 0 0 0 0 0 0 0 0 0 x 0 x x 0 0 0 0 0 x 0 0 0 0 0 x x x 0 x x 0 0 0 0 0 x x x 0 0 0 x x 0 x x x x x x 0 0 0 x x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 0 0 0 x x x x x 0 0 0 x x x x x 0 x 0 0 0 x x x 0 0 0 x 0 x x 0 0 x 0 x x 0 0 0 0 x x x x 0 x x x x x x x x x 0 x x x x x x x x x x x 0 x x x 0 0 0 0 x x x 0 x x 0 0 0 x x x x x x x x 0 0 0 x x 0 0 x x x 0 0 0 0 0 0 x x x x x x x x 0 x x x x x x x x x x x 0 x 0 x 0 x 0 0 x 0 0 x x x x x 0 x x 0 x 0 x 0 x x 0 x 0 0 x x 0 x x x x x x x x x 0 0 0 0 0 0 0 x x 0 0 0 x x x x x 0 x x x 0 0 x x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 x x x x x x x x x x x x x x x 0 0 0 0 x x x 0 x 0 x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 x x x x x x x x x x x x x x x x 0 0 x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 0 x 0 0 0 0 0 0 0 0 x 0 x x x 0 x 0 0 x x x x 0 0 x x x x x x 0 x x x x x x x x 0 x 0 x x x x 0 0 x x 0 x x x x 0 0 0 x x x x x 0 0 0 x 0 x x x x x x x x x x 0 x x x x x x x x 0 x x x x 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x x x x 0 0 0 0 0 0 0 x x x 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 x 0 x x x 0 0 0 0 0 x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 x x x x x 0 x x x x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x x 0 x x 0 0 x x 0 x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Keylogger.AF
  • Socelars.AM
  • Socelars.FA

Files Modified

File Attributes
c:\users\user\appdata\local\temp\mrt1bab.tmp\easing.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\kcwctrl.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\layer.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\mp3flt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\oggflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\perspective.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
Show More
c:\users\user\appdata\local\temp\mrt1bab.tmp\pinball.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\platform.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\txtblt.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\ultimatefullscreen.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt1bab.tmp\waveflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\kcwctrl.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\kcwctrl.txt Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt3c7c.tmp\mmfs2.txt Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\cctrans.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt460a.tmp\mp3flt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\aviflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\bmpflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\fliflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\gifflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\hqdefault_1ak.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\jpgflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\kcpica.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\mp3flt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\pcxflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\pngflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\statictext.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\tgaflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\tooltip.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt7453.tmp\waveflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\download.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\fcmsgbox.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kccombo.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kcfile.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kclist.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\kcriched.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrt9a15.tmp\statictext.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\clickteam-simple_ellipse.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\dlgbox.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\download.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\filereadwrite.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\get.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kccursor.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcfile.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcini.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kclist.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcplugin.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\kcpop.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\layer.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\mp3flt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\parser.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\progressbar.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\redrelayclient.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\tts.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta30b.tmp\waveflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\aviflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\bmpflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dbackground.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dbase.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dbouncingball.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dparticules.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dplatform.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\box2dstatic.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\capture.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\cctrans.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\clickteam-circular.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\clickteam-dragdrop.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\clickteam-regpolygon.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\ctrlx.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\explorer.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\fliflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\fontembed.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\get.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\getnsetmousespeed.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\gifflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\inandout.mvx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\ini++15.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\jpgflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcarray.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcclock.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kccursor.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcfile.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kchisc.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcini.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kclist.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcmouse.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcpica.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\kcwctrl.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\lacewing.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mmkrandompool.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\mp3flt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\oggflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\parser.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\pcxflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\perspective.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\platform.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\pngflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\stringtokenizer.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\tgaflt.ift Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\ultimatefullscreen.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\waveflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta5ff.tmp\webview2.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\kccombo.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta6e9.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta718.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta718.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta718.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrta718.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\bluewing client.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\bluewing server.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\fontembed.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\kcedit.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\kcini.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\kcwctrl.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\oggflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtb93e.tmp\waveflt.sft Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\cctrans.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\explorer.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\kcbutton.mfx Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\mmf2d3d11.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\mmf2d3d8.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\mmf2d3d9.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\mrtbc8e.tmp\mmfs2.dll Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\tmpbe21.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data

Registry Modifications

Key::Value Data API Name
HKLM\system\controlset001\control\mediaresources\directsound\speaker configuration::speaker configuration  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.imaadpcm::fdwsupport  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.imaadpcm::cformattags  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.imaadpcm::aformattagcache  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.imaadpcm::cfiltertags RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msadpcm::fdwsupport  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msadpcm::cformattags  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msadpcm::aformattagcache 2 RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msadpcm::cfiltertags RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msg711::fdwsupport  RegNtPreCreateKey
Show More
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msg711::cformattags  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msg711::aformattagcache  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msg711::cfiltertags RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msgsm610::fdwsupport  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msgsm610::cformattags  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msgsm610::aformattagcache 1 RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.msgsm610::cfiltertags RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.l3acm::fdwsupport  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.l3acm::cformattags  RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.l3acm::aformattagcache U RegNtPreCreateKey
HKLM\software\wow6432node\microsoft\audiocompressionmanager\drivercache\msacm.l3acm::cfiltertags RegNtPreCreateKey
HKCU\software\microsoft\multimedia\msacm.imaadpcm::maxrtencodesetting  RegNtPreCreateKey
HKCU\software\microsoft\multimedia\msacm.imaadpcm::maxrtdecodesetting  RegNtPreCreateKey
HKCU\software\microsoft\multimedia\msacm.msgsm610::maxrtencodesetting  RegNtPreCreateKey
HKCU\software\microsoft\multimedia\msacm.msgsm610::maxrtdecodesetting  RegNtPreCreateKey

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
  • OutputDebugString
User Data Access
  • GetUserObjectInformation
Other Suspicious
  • SetWindowsHookEx
Network Winsock2
  • WSAStartup
Keyboard Access
  • GetAsyncKeyState
  • GetKeyboardState
  • GetKeyState
Network Wininet
  • InternetOpen

Trending

Most Viewed

Loading...