Benign 38% Download

Trojan-GameThief.Win32.Magania.lc

Detects Pirpi Backdoor - and other malware (generic rule)Embedded PE binary at file offset 0xe89c (~7895 bytes)
SHA-256e1eceb78906c8603dcf104c06238d15957078244dbdc24f945c4d5641381ff68
MaleculeTh

Evidence

Detects Pirpi Backdoor - and other malware (generic rule) 0x1ca1–0x1e41
⋯7 more rows
0x1d115833c0cccceb5d51568b753c8b742e78X3....]QV.u<.t.x
0x1d2103f5568b762003f533c94941ad03c533..V.v ..3.IA...3
0x1d31db0fbe103ad67408c1cb0d03da40ebf1....:.t......@..
0x1d413b1f75e75e8b5e2403dd668b0c4b8b5e;.u.^.^$..f..K.^
0x1d511c03dd8b048b03c5ab5e59c3e857ffff.........^Y..W..
⋯15 more rows
Embedded PE binary at file offset 0xe89c (~7895 bytes) 0xe85c–0xe92c
⋯3 more rows
0xe88ca205e4ded94574ae0440b8cb4cdb48a1[email protected].
0xe89c4d5a4b45524e454c33322e444c4c0000MZKERNEL32.DLL..
0xe8ac4c6f61644c6962726172794100000000LoadLibraryA....
0xe8bc47657450726f63416464726573730000GetProcAddress..
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.