Benign Download

Trojan-GameThief.Win32.OnLineGames.kpu

Detects an XORed URL in an executable
SHA-256091e96c41e2371ca938fd02d0081adaff6dbd2e79e08f95071ffe38717e94413
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x5870–0x5930
⋯3 more rows
0x58a0fbfd000010720000ac710000d8720000.....r...q...r..
0x58b04a565652180d0d5555550c4c4b574654JVVR...UUU.LKWFT
0x58c0460c414d4f0d4f4b4c45484b434c0d4eF.AMO.OKLEHKCL.N
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.