Benign Download

Trojan-Downloader.Win32.Banload.osi

CreateRemoteThread API referenceCreateRemoteThread API string
SHA-256fc2a285703a8dc3beea9e235f52d520ad01bc6ec41b6811e272f530bc7d94568
MaleculeH₂(PoU)

Evidence

CreateRemoteThread API reference 0x5a348–0x5a418
⋯3 more rows
0x5a378b4b10500ccb10500dab10500f2b10500................
0x5a38802b2050018b205002eb205003cb20500............<...
0x5a3984cb205005eb205000000000078b20500L...^.......x...
0x5a3a88ab20500a4b2050000000000c4b20500................
⋯7 more rows
Query/set system parameters (symbol) 0x5a484–0x5a574
0x5a48430b6050040b605000000000056b60500[email protected]...
0x5a49468b605007ab6050086b6050094b60500h...z...........
0x5a4a4a4b60500b8b60500ceb60500e2b60500................
0x5a4b4fab605000cb7050024b7050032b70500........$...2...
0x5a4c442b7050054b7050062b7050076b70500B...T...b...v...
⋯11 more rows
Image list icon size import 0x5a658–0x5a7e8
⋯12 more rows
0x5a718aac00500bcc00500d0c00500dec00500................
0x5a728eec00500000000000ac1050022c10500............"...
0x5a7383ac105004cc105005ec1050078c10500:...L...^...x...
0x5a74894c10500b4c10500cac10500e0c10500................
⋯10 more rows
CreateRemoteThread API string 0x5b1c4–0x5b294
⋯3 more rows
0x5b1f443726561746554687265616400000000CreateThread....
0x5b20443726561746552656d6f746554687265CreateRemoteThre
0x5b21461640000000043726561746546696c65ad....CreateFile
0x5b2244d617070696e67410000000043726561MappingA....Crea
⋯7 more rows
Query/set system parameters (string) 0x5b6de–0x5b77e
0x5b6de6765000000005472616e736c6174654dge....TranslateM
0x5b6ee4449537973416363656c000000005472DISysAccel....Tr
0x5b6fe61636b506f7075704d656e7500000000ackPopupMenu....
0x5b70e53797374656d506172616d6574657273SystemParameters
0x5b71e496e666f4100000053686f7757696e64InfoA...ShowWind
0x5b72e6f770000000053686f775363726f6c6cow....ShowScroll
⋯5 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.