Benign Download

Trojan-Downloader.Win32.Zlob.ang

Detects an XORed URL in an executable
SHA-2569ea904ff6612be48ae1591422a9734717344add1e04314398de7e49ebd25f24b
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x305c–0x311c
⋯3 more rows
0x308cfef5b3edf5eda2ececa0b8ee00000000................
0x309ce2fefefab0a5a5faf8e5feefe9fee3e5................
0x30ace4e8ebe4eea4e9e5e7a500006578706c............expl
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.