Hostile 92% Download

Trojan-PSW.Win32.Delf.crb

Known password stealer malware

Detects typical strings in a reversed or otherwise modified formBinary contains a UPX packing marker
SHA-256465a935b9c93885a6dcd21673db2357fa60ecd1cf2516f8a831a8bcefa8262ef
MaleculeTh

Evidence

Detects typical strings in a reversed or otherwise modified form 0x4fea–0x517a
⋯7 more rows
0x505a746365746f72506c6175747269560000tcetorPlautriV..
0x506a73736572646441636f72507465470000sserddAcorPteG..
0x507a417972617262694c64616f4c0000006cAyrarbiLdaoL...l
0x508a6c642e6d6d6e6977006c6c642e323369ld.mmniw.lld.23i
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.