Trojan-Spy.Win32.Ayolog.fv
Sample from CN Honker Pentest Toolset - file Webshell.exeEmbedded PE binary at file offset 0xbf8b (~249022 bytes)
SHA-256a3787b7339eddbca76159968f456f8dee00fd90586fdd0d83538d1f6fdc4ba27
MaleculeTh
Evidence
⋯3 more rows
0xbf7b00000000000000000000004269746368...........Bitch
0xbf8b4d5a90000300000004000000ffff0000MZ..............
0xbf9bb8000000000000004000000000000000........@.......
0xbfab00000000000000000000000000000000................
⋯7 more rows
⋯7 more rows
0x4707464206973206e6f74207661696c642100d is not vaild!.
0x47084446f20796f752077616e7420746f2063Do you want to c
0x47094616e63656c207468652066696c652064ancel the file d
0x470a46f776e6c6f61643f0d0a5761726e696eownload?..Warnin
0x470b4673a204170706c69636174696f6e2063g: Application c
⋯15 more rows