Benign Download

Trojan-Downloader.Win32.Agent.jwr

Detects an XORed URL in an executable
SHA-2562e8961d6bbeb4cfe769638e388c8914dd30c7dc7fb503221d4bd39a9e333e6a9
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x8d0–0x990
⋯3 more rows
0x900d4250000de250000a225000000000000.%...%...%......
0x9100e1212165c4949151308480508555154....\II...H..UQT
0x9205748091401491513084802071266b93cWH...I...H...f.<
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.