Benign Download

Trojan-GameThief.Win32.OnLineGames.xyt

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256aa190c25867aaff1a8f1cafe52ed4e9e6774bd36105529f8ef8e136b38e44eb8
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x25d0–0x26b0
⋯3 more rows
0x260001000000000000000000000091000000................
0x2610f9e5e5e1abbebef3fefefabffdf8e7f4................
0x2620faf8e2e2bff2ffbeebe5a2a7a4befdf8................
0x2630ffbff0e2e10000000000000000000000................
0x264000000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.