Benign Download

Trojan-GameThief.Win32.OnLineGames.oa

Detects an XORed URL in an executable
SHA-2567dd7202fe4a93cb3e012533ef52d6ed889cce51cb1aab54679d1eb58c0a7e264
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x1fd4–0x2094
⋯3 more rows
0x200400000000010000000000000095000000................
0x2014fde1e1e5afbabae2e2e2bbada4e1e1bb................
0x2024f6fbbafffdfdfdbaf9fcfbbbf4e6e500................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.