Benign Download

Trojan-GameThief.Win32.Nilage.blr

Detects an XORed URL in an executable
SHA-256a505d144fa83bc20bb59da328eb9471f6eada04611dae4d546b2f2e8c625598d
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x51b8–0x5278
⋯3 more rows
0x51e8ffff01c645fc00005068010050048b15....E...Ph..P...
0x51f8475b5b5f150000455b1e015c405a4545G[[_...E[..\@ZEE
0x52084545014c4042004c4c47470043464101[email protected].
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.