Benign Download

Trojan-GameThief.Win32.WOW.ejs

Detects Gh0st RAT mentioned in Cylance' Ghost Dragon Report
SHA-2566b577b540cf8d973bf3ef3c9a509b1438977f724c12c1aef0778526afc44f744
MaleculeTh

Evidence

Detects Gh0st RAT mentioned in Cylance' Ghost Dragon Report 0xb0b8–0xb248
⋯7 more rows
0xb12810920010000000002e50414400000000.........PAD....
0xb13852656753657456616c75654578287374RegSetValueEx(st
0xb14861727429000000005479706500000000art)....Type....
0xb15853595354454d5c43757272656e74436fSYSTEM\CurrentCo
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.