Benign Download

Trojan-GameThief.Win32.OnLineGames.leh

Detects an XORed URL in an executable
SHA-256c78db898147332093b22bdfb73a670d3d3f9a02403fc751ef40871a4e22ca598
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x5eb4–0x5f74
⋯3 more rows
0x5ee43da10200000000008d82d40200000000=...............
0x5ef4594545410b1e1e4646461f5f58445547YEEA...FFF._XDUG
0x5f04551f525e5c1e5c585f565b58505f1e5dU.R^\.\X_V[XP_.]
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.