Benign Download

Trojan-PSW.Win32.OnLineGames.lc

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256470bb8520b95bd912dc902ca797ace21a8691e6fcfadda608f7e6c4bb66e4e97
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x1fd4–0x20b4
⋯3 more rows
0x200400000000010000000000000095000000................
0x2014fde1e1e5afbabae2e2e2bba3a3a4a1a4................
0x2024adadbbf6fbbae7f0ede0f0baf9fcfbbb................
0x2034f4e6e500000000000000000000000000................
0x204400000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.