Benign Download

Trojan-GameThief.Win32.OnLineGames.skcn

Detects an XORed URL in an executable
SHA-25684d0389421996bad8b467827e25c66bef624694a9792b79ddb480c915b897716
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x6ff4–0x70b4
⋯3 more rows
0x70240000000020000000300000004a000000.... ...0...J...
0x7034223e3e3a7065653d3d3d64263f253922">>:pee===d&?%9"
0x70442b2823642924650c0c7e797f0e0c0d02+(#d)$e..~y.....
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.