Benign Download

Trojan-GameThief.Win32.OnLineGames.efd

Detects an XORed URL in an executable
SHA-256d5bd8eb1a2282594a80d6580f7fdc1dbc67becc433072927cf81e0385dbcd349
MaleculeTh

Evidence

Detects an XORed URL in an executable 0x4ec8–0x4f88
⋯3 more rows
0x4ef8b5b3000010720000ac71000074720000.....r...q..tr..
0x4f08405c5c58120707425c1a065b475d4242@\\X...B\..[G]BB
0x4f184242064b4745074242425c0744414606BB.KGE.BBB\.DAF.
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.