Threat Database Stealers Trojan.Stealer.BRCA

Trojan.Stealer.BRCA

By CagedTech in Stealers, Trojans

Threat Scorecard

Popularity Rank: 16,875
Threat Level: 80 % (High)
Infected Computers: 109
First Seen: January 12, 2024
Last Seen: January 12, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Stealer.BRCA
Signature status: No Signature

Known Samples

MD5: aa671724af6454e01a9e3b77e29e5a70
SHA1: f686ce2680dcaf28e34f8f27cde8b66f4fa665ac
SHA256: 4C57A81531F070CEDED901F02EAAA8E0EDFB78666D53A92EE98D3FA23088E130
File Size: 7.41 MB, 7407047 bytes
MD5: 9ea8ca145df6774f808400acc65f917d
SHA1: 76660936b8f5201b92ab3ec3b11b7f441890a83b
SHA256: 58283F0102C162D5643B626B0FA251459F84A496302CC5E693B2866FFD5CDE00
File Size: 7.70 MB, 7697391 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name I-O DATA DEVICE
File Description IC Card Reader Writer Diagnostic Tool
File Version 1.1.2.0
Internal Name IccrwDiag
Legal Copyright © I-O DATA DEVICE, INC.
Legal Trademarks I-O DATA DEVICE, INC.
Original Filename IccrwDiag.exe
Product Name IC Card Reader Writer Diagnostic Tool
Product Version 1,0,0,0

File Traits

  • HighEntropy
  • No Version Info
  • Py-installer
  • x86
  • zlib (In Overlay)
  • zlib overlay

Block Information

Total Blocks: 923
Potentially Malicious Blocks: 6
Whitelisted Blocks: 917
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 2 0 0 0 0 0 0 0 0 1 1 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 2 0 0 1 0 0 1 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 0 0 0 0 0 0 0 2 0 0 0 0 2 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 2 0 0 3 1 1 0 1 0 1 0 0 1 1 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Mint.B

Files Modified

File Attributes
c:\users\user\appdata\local\temp\_mei28522\_bz2.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\_decimal.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\_hashlib.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\_lzma.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\_socket.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\_tkinter.pyd Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\base_library.zip Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\libcrypto-1_1.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\python310.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\select.pyd Generic Write,Read Attributes
Show More
c:\users\user\appdata\local\temp\_mei28522\tcl86t.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl8\8.4\platform-1.0.18.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl8\8.4\platform\shell-1.1.4.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl8\8.5\msgcat-1.6.1.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl8\8.5\tcltest-2.5.3.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl8\8.6\http-2.9.5.tm Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\auto.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\clock.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\ascii.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\big5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cns11643.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1250.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1251.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1252.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1253.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1254.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1255.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1256.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1257.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp1258.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp437.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp737.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp775.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp850.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp852.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp855.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp857.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp860.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp861.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp862.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp863.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp864.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp865.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp866.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp869.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp874.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp932.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp936.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp949.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\cp950.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\dingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\ebcdic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\euc-cn.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\euc-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\euc-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\gb12345.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\gb1988.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\gb2312-raw.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\gb2312.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso2022-jp.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso2022-kr.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso2022.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-1.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-10.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-11.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-13.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-14.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-15.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-16.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-2.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-3.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-4.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-5.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-6.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-7.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-8.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\iso8859-9.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\jis0201.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\jis0208.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\jis0212.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\koi8-r.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\koi8-u.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\ksc5601.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\maccenteuro.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\maccroatian.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\maccyrillic.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macdingbats.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macgreek.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\maciceland.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macjapan.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macroman.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macromania.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macthai.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macturkish.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\macukraine.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\shiftjis.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\symbol.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\encoding\tis-620.enc Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\history.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\http1.0\http.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\http1.0\pkgindex.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\init.tcl Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\af.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\af_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ar_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ar_jo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ar_lb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ar_sy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\bg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\bn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\bn_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\cs.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\da.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\de.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\de_at.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\de_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\el.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_au.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_bw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_hk.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_nz.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_ph.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_sg.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_za.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\en_zw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\eo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_ar.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_bo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_cl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_co.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_cr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_do.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_ec.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_gt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_hn.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_mx.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_ni.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_pa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_pe.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_pr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_py.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_sv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_uy.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\es_ve.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\et.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\eu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\eu_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fa.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fa_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fa_ir.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fo_fo.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fr_be.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fr_ca.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\fr_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ga.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ga_ie.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\gl_es.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\gv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\gv_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\he.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\hi.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\hi_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\hr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\hu.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\id_id.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\is.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\it.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\it_ch.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ja.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kl_gl.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ko.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ko_kr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kok.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kok_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kw.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\kw_gb.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\lt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\lv.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\mk.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\mr.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\mr_in.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ms.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\ms_my.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\mt.msg Generic Write,Read Attributes
c:\users\user\appdata\local\temp\_mei28522\tcl\msgs\nb.msg Generic Write,Read Attributes

1922 additional files are not displayed above.

Windows API Usage

Category API
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • CreateProcess

Shell Command Execution

c:\users\user\downloads\f686ce2680dcaf28e34f8f27cde8b66f4fa665ac_0007407047 "c:\users\user\downloads\f686ce2680dcaf28e34f8f27cde8b66f4fa665ac_0007407047"

Trending

Most Viewed

Loading...