Hostile 92% Download

Backdoor.Win32.VB.fkx

Named backdoor, signed PE

Detects typical strings in a reversed or otherwise modified form
SHA-256b98c69cb0f48547575d842be6597490f57f44add6ee447d51564cb545fb467c1
MaleculeTh

Evidence

Detects typical strings in a reversed or otherwise modified form 0x8b5c–0x8cdc
⋯7 more rows
0x8bcc74520000006c6c642e6c6c64746e0000tR...lld.lldtn..
0x8bdc41737365636f72506574616572430000AssecorPetaerC..
0x8bec0041656372756f736552646e69460000.AecruoseRdniF..
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.