Hostile 100% Download

Trojan-GameThief.Win32.OnLineGames.sadc

Named game thief trojan

Detects suspicious XORed MSDOS stub messageLook for 2 byte xor of a PE starting at offset 0
SHA-256020c0eb08d5b93a78cd8ff611810c68bde65e57cb7700ac1ab18eea535311eb7
MaleculeTh

Evidence

Detects suspicious XORed MSDOS stub message line 0
0j}w'%'''#'('��''�'''''''g'=''''''''''''''''''''''''''''''''''&''�7')8�.��&k���sONTWUH@UFJJRTSEBURIRICBUpNI*-''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''''wb''k& '>ye ''''''''�'��,&%>'E'''9''''''gW'''7'''�''''&''7'''%''&'''''''#''''''''�''

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.