Trojan-GameThief.Win32.OnLineGames.snlm
Named game thief trojan
Detects Pirpi Backdoor - and other malware (generic rule)Embedded PE binary at file offset 0x291d (~36864 bytes)
SHA-2567cf48f4060a33e82df947d22bab004745010f47e26702156c129a33c06537e5e
MaleculeTh
Evidence
⋯7 more rows
0x2554000000e2f9eb8251568b753c8b742e78.......QV.u<.t.x
0x256403f5568b762003f533c94941ad03c533..V.v ..3.IA...3
0x2574db0fbe103ad67408c1cb0d03da40ebf1....:.t......@..
0x25843b1f75e75e8b5e2403dd668b0c4b8b5e;.u.^.^$..f..K.^
0x25941c03dd8b048b03c5ab5e59c35159c3e8.........^Y.QY..
⋯15 more rows
⋯3 more rows
0x290d8ffcffff61e889fcffffe884fcffffc3....a...........
0x291d4d5a90000300000004000000ffff0000MZ..............
0x292db8000000000000004000000000000000........@.......
0x293d00000000000000000000000000000000................
⋯7 more rows