Benign Download

Trojan-Downloader.Win32.Banload.hu

IsDebuggerPresent API name in PE stringsImage list icon size import
SHA-2561faf6230c2d772898c598da3fdcdc93fe9645af095676f8c54bd3e1611abfbde
MaleculeH₂(PoU)

Evidence

IsDebuggerPresent API name in PE strings 0x283d7–0x284a7
⋯3 more rows
0x28407436c6f736548616e646c650000000000CloseHandle.....
0x284174973446562756767657250726573656eIsDebuggerPresen
0x28427740000404500104045009ce044001050t..@[email protected]
0x28437450000000000000000003ca23a0100bcE.........<.:...
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.