Benign Download

Trojan-Downloader.Win32.Winlagons.aid

Very few extracted stringsPE lacks signature record
SHA-256b3e44f99bf5b4c2aca66de61046ab89f6b91d39b4d46e8ea087b549d8df7d097

Evidence

Very few extracted strings 0x0–0xd0
0x04d5a50000200000004000000ffff0000MZP.............
0x10b8000000000000004000000000000000........@.......
0x2000000000000000000000000000000000................
⋯11 more rows
Small high-entropy writable .data section 0x2fc0–0x3230
⋯3 more rows
0x2ff000000000000000000000000000000000................
0x3000d31300b857000000001400f2007d97eb....W........}..
0x3010000000000000f8ffffffff0000000000................
0x30200075b700000082000000b7002f000008.u........../...
0x3030d600ae000000cc40006200008efb9953[email protected]
⋯32 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.