Benign Download

Trojan-Downloader.Win32.Banload.uzf

Image list icon size importExecute shell command (ShellExecuteA)
SHA-2564f9adf63269afbeaa101028bf72e94c65d07b8f13be4bd2b3e6962ffdebb6cb7
MaleculeH₂(PoU)

Evidence

Query/set system parameters (string) 0x4f196–0x4f236
0x4f1966765000000005472616e736c6174654dge....TranslateM
0x4f1a64449537973416363656c000000005472DISysAccel....Tr
0x4f1b661636b506f7075704d656e7500000000ackPopupMenu....
0x4f1c653797374656d506172616d6574657273SystemParameters
0x4f1d6496e666f4100000053686f7757696e64InfoA...ShowWind
0x4f1e66f770000000053686f775363726f6c6cow....ShowScroll
⋯5 more rows
Query/set system parameters (symbol) 0x51404–0x514e4
0x514044c305c307c30843088308c3090309430L0\0|0.0.0.0.0.0
0x5141498309c30a030a430b430d430dc30e030.0.0.0.0.0.0.0.0
0x51424e430e830ec30f030f430f830fc301431.0.0.0.0.0.0.0.1
0x5143434313c314031443148314c315031543141<1@1D1H1L1P1T1
0x5144458315c317031903198319c31a031a431X1\1p1.1.1.1.1.1
⋯10 more rows
Execute shell command (ShellExecuteA) 0x515d0–0x51770
⋯10 more rows
0x51670043908390c391039143918391c392039.9.9.9.9.9.9.9 9
0x51680383958396039643968396c397039743989X9`9d9h9l9p9t9
0x5169078397c398039843988398c3990399439x9|9.9.9.9.9.9.9
0x516a098399c39a039b439d439dc39e039e439.9.9.9.9.9.9.9.9
0x516b0e839ec39f039f439f839fc39003a043a.9.9.9.9.9.9.:.:
0x516c0083a0c3a103a143a183ae63aea3aee3a.:.:.:.:.:.:.:.:
0x516d0f23af63afa3afe3a023b063b0a3b0e3b.:.:.:.:.;.;.;.;
⋯10 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.