Benign Download

Trojan-Downloader.Win32.Inor

Detects an XORed URL in an executable
SHA-2566cfad92c505388e100bdda6595505753dcebaf47bf8b36af7599d85a6c8c5f9d
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x23e2–0x24a2
⋯3 more rows
0x24123537387831306d343839357978733600578x10m4895yxs6.
0x24222539393d7762622028202f283f3e6321%99=wbb ( /(?>c!
0x2432342e223e632e2263382662202c262c3f4.">c."c8&b ,&,?
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.