Benign Download

Trojan-GameThief.Win32.OnLineGames.unbp

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256be4818111e875930b4bd96f9e74f0e14e387f6ba3659e824cd4c3693fdf86f69
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x7fda–0x80ba
⋯3 more rows
0x800a7032613729713c327700002f000000cap2a7)q<2w../....
0x801aa2bebebaf0e5e5a7abb9beafb8e4abbe................
0x802aa2afa4b9fbe4a9a4e5999b8693fd8f9d................
0x803af2f9839d85f9e5baa5b9bee4abb9ba00................
0x804a00000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.