Benign Download

Trojan-GameThief.Win32.OnLineGames.silz

Detects an XORed URL in an executable
SHA-2563105ebfe0c2f6b173a653b00a8ec1c25fcd9832095b6693959e41e677d799ada
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x5df4–0x5eb4
⋯3 more rows
0x5e240000000020000000300000004a000000.... ...0...J...
0x5e34223e3e3a7065653d3d3d64263f253922">>:pee===d&?%9"
0x5e442b2823642924650c0c7e797f0e0c0d02+(#d)$e..~y.....
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.