Hostile 92% Download

Trojan-Spy.Win32.FlyStudio.lk

Named Trojan-Spy, sandbox evasion

Detects executables potentially checking for WinJail sandbox window
SHA-2563d4d9d727e9f79876eb458188008b892ca405228e50a1cc1320f8e640b861c5d
MaleculeTh

Evidence

Detects executables potentially checking for WinJail sandbox window 0x2825–0x29a5
⋯7 more rows
0x28954e407c40736c0076687474703a2f2f00N@|@sl.vhttp://.
0x28a54166783a3430303030303a3000c8b7b6Afx:400000:0....
0x28b5a8007366696e6477696e646f772e7478..sfindwindow.tx
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.