Benign Download

Trojan-GameThief.Win32.OnLineGames.xru

Detects an XORed URL in an executableEncoded content decoded: xor
SHA-256fcaa6c6e275c5fbf526a00ca7b0a734acfd35bf9995b550f7b55a0caa12205e9
MaleculeMdTh

Evidence

Encoded content decoded: xor 0x17cc–0x18ac
⋯3 more rows
0x17fc00000000000000000000000001000000................
0x180cfbe7e7e3a9bcbce0fce6a1bdfea0a5aa................
0x181cfebdf0fcfebcf9f9fefbbcfffafdbdf2................
0x182ce0e30000000000000000000000000000................
0x183c00000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.