Benign Download

Trojan-Downloader.Win32.Delf.prq

Image list icon size importExecute shell command (ShellExecuteA)
SHA-256456b253989d82b0223063b5d8ad3e98b147b2f249423b4b961a063fa1768ebff
MaleculeH₂(PoU)

Evidence

Query/set system parameters (string) 0x88398–0x88438
0x88398654d65737361676500005472616e736ceMessage..Transl
0x883a86174654d4449537973416363656c0000ateMDISysAccel..
0x883b8547261636b506f7075704d656e750000TrackPopupMenu..
0x883c853797374656d506172616d6574657273SystemParameters
0x883d8496e666f4100000053686f7757696e64InfoA...ShowWind
0x883e86f77000053686f775363726f6c6c4261ow..ShowScrollBa
⋯5 more rows
Query/set system parameters (symbol) 0x8a50c–0x8a6dc
0x8a50c00000000000000000000000000000000................
0x8a51c00000000000000000000000000000000................
0x8a52c00000000000000000000000000000000................
0x8a53c00000000000000000000000000000000................
0x8a54c00000000000000000000000000000000................
⋯25 more rows
Execute shell command (ShellExecuteA) 0x8a6ec–0x8a8ec
⋯16 more rows
0x8a7ec00000000000000000000000000000000................
0x8a7fc00000000000000000000000000000000................
0x8a80c00000000000000000000000000000000................
0x8a81c00000000000000000000000000000000................
0x8a82c00000000000000000000000000000000................
0x8a83c00000000000000000000000000000000................
0x8a84c00000000000000000000000000000000................
0x8a85c00000000000000000000000000000000................
⋯9 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.