Benign Download

Backdoor.Win32.Bifrose.you

Detects Base64 encoded Executable in ExecutableEmbedded PE binary at file offset 0x163006 (~28674 bytes)
SHA-256d6417a514b79668508ee5efb54a22f2126376e521cdcbf71a7f87b7db7963ce7
MaleculeTh

Evidence

Embedded PE binary at file offset 0x163006 (~28674 bytes) 0x162f86–0x163116
⋯7 more rows
0x162ff6000000000000000000007c2d2d7c317c..........|--|1|
0x1630065456715141414d414141414541414141TVqQAAMAAAAEAAAA
0x1630162f2f3841414c67414141414141414141//8AALgAAAAAAAAA
0x16302651414141414141414141414141414141QAAAAAAAAAAAAAAA
⋯15 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.