Benign Download

Trojan-GameThief.Win32.OnLineGames.ubha

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256dea1e704fb7d9d26e4212a98b33e39350e3e4f1702e66fa9f96fafdacfb0a426
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x722a–0x730a
⋯3 more rows
0x725aa5bfe9e5000000000000002d000000cb...........-....
0x726aa3bfbfbbf1e4e4fae5b8aaa5acbea4bc................
0x727aa2beb8acadfafbfbfbfbe5a8a5e4bba4................
0x728ab8bfa7b2e4bba4b8bfe5aab8bb000000................
0x729a00000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.