Benign Download

Trojan-PSW.Win32.Element.ao

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256884d839a180aba8e45b530ce0fcbe67fa5a6a494f962ae4d4eacf8e8c95fe58c
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x53c0–0x5420
⋯3 more rows
0x53f000000000000000000000000000000000................
0x54006478787c3623237d7d22393e3c7f6a22dxx|6##}}"9><.j"
0x5410637e6b2368637b622368637b62227874c~k#hc{b#hc{b"xt
0x5420782a4f7a614d x*OzaM

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.