Benign Download

Trojan-GameThief.Win32.Magania.wwb

Detects an XORed URL in an executable
SHA-2564267f347683932a441728396ffdd7c609ab5eae0036fdd3595e17bcdde4e01c9
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x51d8–0x5298
⋯3 more rows
0x5208eb5f5e5b8be55dc3ffffffff07000000._^[..].........
0x5218687474703a2f2f00ffffffff01000000http://.........
0x52282f000000558bec81c4b8fbffff535657/...U........SVW
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.