Hostile 92% Download

Trojan-Spy.Win32.Ardamax.sd

Named Trojan-Spy malware

Detects typical strings in a reversed or otherwise modified form
SHA-25626ca55bce57b8af0e75be5f1bf1437df1a52dccab3a7270fbd0cd4953e8cad93
MaleculeTh

Evidence

Detects typical strings in a reversed or otherwise modified form 0x16401e–0x16419e
⋯7 more rows
0x16408e577972617262694c64616f4c02550000WyrarbiLdaoL.U..
0x16409e73736572646441636f725074654701a0sserddAcorPteG..
0x1640ae000070666c6f72746e6f635f00b70000..pflortnoc_....
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.