Hostile 92% Download

Trojan-Spy.Win32.VB.aog

Sandbox evasion, spyware

Detects binaries and memory artifacts referencing sandbox product IDs
SHA-2567983c5a7dd4b1a399616b280690eff18745e41e39a922cfbc5a2b7b6313aecd1
MaleculeTh

Evidence

Detects binaries and memory artifacts referencing sandbox product IDs 0x6990–0x6b70
⋯7 more rows
0x6a007500630074004900640000002e000000u.c.t.I.d.......
0x6a10370036003400380037002d00330033007.6.4.8.7.-.3.3.
0x6a2037002d003800340032003900390035007.-.8.4.2.9.9.5.
0x6a3035002d003200320036003100340000005.-.2.2.6.1.4...
0x6a402e000000370036003400380037002d00....7.6.4.8.7.-.
0x6a503600340034002d0033003100370037006.4.4.-.3.1.7.7.
0x6a603000330037002d0032003300350031000.3.7.-.2.3.5.1.
0x6a70300000002e00000035003500320037000.......5.5.2.7.
0x6a8034002d003600340030002d00320036004.-.6.4.0.-.2.6.
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.