Benign 38% Download

Trojan-GameThief.Win32.OnLineGames.rb

Detects Pirpi Backdoor - and other malware (generic rule)Embedded PE binary at file offset 0x9e06 (~45056 bytes)
SHA-256f7bbeacb1903fb25bcd50983cc7a3a4f3f3d13dc492ca091a4421c478b8fb4df
MaleculeTh

Evidence

Detects Pirpi Backdoor - and other malware (generic rule) 0x99cd–0x9b6d
⋯7 more rows
0x9a3d000000e2f9eb8251568b753c8b742e78.......QV.u<.t.x
0x9a4d03f5568b762003f533c94941ad03c533..V.v ..3.IA...3
0x9a5ddb0fbe103ad67408c1cb0d03da40ebf1....:.t......@..
0x9a6d3b1f75e75e8b5e2403dd668b0c4b8b5e;.u.^.^$..f..K.^
0x9a7d1c03dd8b048b03c5ab5e59c3e886ffff.........^Y.....
⋯15 more rows
Embedded PE binary at file offset 0x9e06 (~45056 bytes) 0x9dc6–0x9e96
⋯3 more rows
0x9df6adfcffff61e8a7fcffffe8a2fcffffc3....a...........
0x9e064d5a90000300000004000000ffff0000MZ..............
0x9e16b8000000000000004000000000000000........@.......
0x9e2600000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.