Benign Download

Trojan-PSW.Win32.Delf.wl

Detects an XORed URL in an executable
SHA-2561fdb931c8c34cf9a6e3ab15e7d2d9cd2347a91b61332e0af4e733f9eaffc4480
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x4380–0x4440
⋯3 more rows
0x43b090e1ffffebe35f5e5b8be55dc2040000......_^[..]....
0x43c0687474703a2f2f00ffffffff01000000http://.........
0x43d02f000000ffffffff010000002e000000/...............
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.