Benign Download

Trojan-PSW.Win32.OnLineGames.aqis

Detects an XORed URL in an executable
SHA-256bfcd3a08fb0e534e4bb05079781f5d390454643d550e9463aa1c633896e2a2d2
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x4068–0x4128
⋯3 more rows
0x4098ffff01c645fc00005068010050048b15....E...Ph..P...
0x40a8405c5c58120707425c19065b475d4242@\\X...B\..[G]BB
0x40b84242064b4745074b4b40400744414606BB.KGE.KK@@.DAF.
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.