Benign Download

Trojan-GameThief.Win32.OnLineGames.xty

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256b222369da0e0560b831bb1c37004d7afa4c44c19fa9c5de3ab145b05b6cb55f9
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x11cc–0x12ac
⋯3 more rows
0x11fc00000000000000000000000001000000................
0x120cfee2e2e6acb9b9fef9e3fef9f8f1e5fe................
0x121cf3f8f1b8fef9e5e2b8a7f1fdfcb8f5f9................
0x122cfbb9f4f3fff0f3f8b9fafff8b8f7e5e6................
0x123c00000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.