


Source: C:\Program Files (x8 6)\WinMerg e\WinMerge U.exeĬode function: 7_2_004D30 FE _EH_pr olog3_GS,F indFirstFi leW,FindCl ose,FindFi rstFileW,F indClose,Ĭode function: 7_2_004D31 E6 _wcschr ,ExpandEnv ironmentSt ringsW,Get FullPathNa meW,_wcsch r,_wcslen, _wcschr,_w cschr,_wcs chr,FindFi rstFileW,F indClose,Ĭode function: 7_2_004D67 74 _EH_pr olog3_GS,F indFirstFi leW,FindNe xtFileW,Fi ndClose,Ĭode function: 7_2_004F68 8A FindFir stFileW,Fi ndClose, 6-Setup.tm pĬode function: 2_2_004AD2 94 FindFir stFileW,Ge tLastError ,Ĭode function: 2_2_004081 74 GetModu leHandleW, GetProcAdd ress,lstrc pynW,lstrc pynW,lstrc pynW,FindF irstFileW, FindClose, lstrlenW,l strcpynW,l strlenW,ls trcpynW, Source: C:\Users\u ser\AppDat a\Local\Te mp\is-KBDD 4.tmp\WinM erge-2.16. Source: C:\Users\u ser\Deskto p\WinMerge -2.16.6-Se tup.exeĬode function: 0_2_00405B EC GetModu leHandleW, GetProcAdd ress,lstrc pynW,lstrc pynW,lstrc pynW,FindF irstFileW, FindClose, lstrlenW,l strcpynW,l strlenW,ls trcpynW, Remotely Track Device Without AuthorizationĮxfiltration Over Command and Control ChannelĬontains functionality to enumerate / list files inside a directory Deobfuscate/Decode Files or Information 1Įavesdrop on Insecure Network Communication
