MD5 Hash File type Added Source Yara Hits
75458af837cc90e461bdae3d608a18ab PE32 2018-06-23 05:58:06User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
70bc3cfc7607e722953d2e89f5555b14 PE32 2018-11-10 00:59:43http://167.99.161.218/pup.exe YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
a809802b38a03ac9cec6cd89f77e53f2 PE32 2019-02-27 16:43:54User Submission FlorianRoth/WiltedTulip_ReflectiveLoader FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY
f617fa7d8396835ff4de3cfe4d7ac91d PE32 2019-07-27 20:32:16http://61.14.238.91:80/pupy.exe FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
fb4c13cac5112b8c0d0a8fa9e9c8ad93 PE32 2019-07-27 20:32:35http://61.14.238.91:80/pupy2.exe FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
c12d7718c5665dc12e429b71d2a0a36c PE32+ 2019-07-27 20:41:54User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
d74e080c8ac771f916e0299db8b26220 PE32 2019-07-27 20:42:00User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
63d9964f58f8ae9b7fbe4dc2cbab41b9 PE32+ 2019-07-27 20:42:05User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
34a893029ee5669a8380a7d80d428fde PE32+ 2019-07-27 20:42:15User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
ac7fe417ee25eda86d9dc38247a35a2d PE32 2019-07-27 20:42:25User Submission FlorianRoth/WiltedTulip_ReflectiveLoader FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
298702188bc42433ad9a8901483d94e3 PE32+ 2019-07-27 20:43:05User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
1fe41bb7da7ff5e2604cc9c824ae8816 PE32+ 2019-07-27 20:43:11User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
a2b18a89e130cb4b711d892110dd9ff7 PE32+ 2019-07-27 20:43:17User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
cc22b3ae00d75f4dcfc3951f6ab5f17a PE32 2019-07-27 20:43:23User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
fe7a2a618048b10c96d7d4d62149f2b7 PE32 2019-07-27 20:43:36User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
14dfc5f50ff57b4dc964355534022d34 PE32 2019-07-27 20:43:40User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
d69cd32aafeb1d185bb09ace92175f89 PE32+ 2019-07-27 20:43:46User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
cdfad288716d196d45cafb0df3c3566b PE32 2019-07-27 20:44:03User Submission FlorianRoth/WiltedTulip_ReflectiveLoader FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
12e76bbf3f0ec5bd45ba62d06eaf7409 PE32+ 2019-07-27 20:44:14User Submission FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
c45c25b962b40da58ce5ec6c27b18d25 PE32 2019-07-27 20:44:20User Submission FlorianRoth/WiltedTulip_ReflectiveLoader FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
d773cf2fb33303fb705764e54b5b4649 PE32 2019-07-27 20:44:27User Submission FlorianRoth/WiltedTulip_ReflectiveLoader FlorianRoth/ReflectiveLoader FlorianRoth/APT_PupyRAT_PY FlorianRoth/Pupy_Backdoor
78b65c3d70aab62bc55d9b2ba5435fd1 data 2019-08-21 12:49:07User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect FlorianRoth/clearlog [+]