Benign Download

Trojan.Win32.VB.afw

PE lacks signature recordCommon PE packers
SHA-256d33afed89e4f486a78433272a48f5ea98925afa5f46b0a96fc16ef41a6a13772

Evidence

UPX packer marker string 0x170–0x230
⋯3 more rows
0x1a000000000000000000000000000000000................
0x1b055505830000000000040000000100000UPX0.....@......
0x1c000400000000400000000000000000000.@..............
⋯7 more rows
UPX packed section name 0x3c0–0x480
⋯3 more rows
0x3f000000000000000000000000000000000................
0x40000000000000000000000000000000000................
0x41000000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.