Krachulka

Malware type
trojan, credential-stealer
Family
Malware family
Profile updated
2026-07-07 15:08:46

Targeted industries: financial-services

Targeted regions: country_code:br

Context

According to ESET, this malware family is a banking trojan and was active in Brazil until the middle of 2019. Its most noticeable characteristic was its usage of well-known cryptographic methods to encrypt strings, as opposed to the majority of Latin American banking trojans that mainly use custom encryption schemes.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Krachulka (report)
  • ESET — Dirty Dozen Latin America Amavaldo Zumanek (report)

External references