Benign Download

Trojan-GameThief.Win32.OnLineGames.xwa

Detects an XORed URL in an executable
SHA-256c116c4af0c5f62c7b46dfea7bfbea2ee537e27e39bc753e5dcd07b1b85e6f16b
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x1dd0–0x1e90
⋯3 more rows
0x1e0000000000000000000100000000000000................
0x1e10fde1e1e5afbabae2e2e2bbada4e1e1bb................
0x1e20f6fbbafffdfdfdbaf9fcfbbbf4e6e500................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.