Trojan-Spy.Win32.FlyStudio.adk
Detects executables potentially checking for WinJail sandbox window
SHA-256ddc1f08a69ff3609216c47f4dbd4dee6e5a0bfcee37f4a14532b656bc1155097
MaleculeTh
Evidence
⋯7 more rows
0x2d7500000000341024c10100000003000000....4.$.........
0x2d854166783a3430303030303a3000c8b7b6Afx:400000:0....
0x2d95a8002e64617400757365723332007573...dat.user32.us
⋯15 more rows