Benign download unavailable

Trojan-PSW.Win32.Small.ca

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-25611798f85985ade178cb0337912de82908f72d3293b7ec9086cb21b095b17e66c
MaleculeMdTh

Evidence

Detects an XORed URL in an executable 0x437c–0x443c
⋯3 more rows
0x43aceb5f5e5b8be55dc3ffffffff07000000._^[..].........
0x43bc687474703a2f2f00ffffffff01000000http://.........
0x43cc2f000000558bec81c4c8fbffff535633/...U........SV3
⋯7 more rows
Encoded content decoded: xor 0x5858–0x5938
⋯3 more rows
0x5888ebeb5b8be55dc300ffffffff20000000..[..]...... ...
0x58986478787c36232368637b6222686d637ddxx|6##hc{b"hmc}
0x58a87d226f636123797c686d786922787478}"oca#y|hmxi"xtx
0x58b800000000ffffffff010000002e000000................
0x58c8ffffffff0100000030000000ffffffff........0.......
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.