Benign Download

Trojan-Downloader.Win32.Small.xvu

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-25652c21fc2d7bd503bffdd3d43e0d4dc33cbe1bb0a90c6cb7033807458158490d5
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x7bd–0x89d
⋯3 more rows
0x7ed5858582e313d2f6b6a3a20763c343458XXX.1=/kj: v<44X
0x7fd6204082a373f2a3935781e31343d2b04b..*7?*95x.14=+.
0x80d11362c3d2a363d2c781d202834372a3d.6,=*6=,x. (47*=
0x81d2a04111d000814170a1d761d001d587d*.........v...X}
0x82d0c1d15087d0404587d0c1d15087d0404....}..X}....}..
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.