SHA256 Hash File type Added Source Yara Hits
PE32 2017-11-01 13:45:16http://vrvid.ru/winhost.exe YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
PE32 2017-11-06 01:45:33http://www.eeme7j.win/mule.exe YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsConsole [+]
PE32 2017-11-08 13:45:14http://www.eeme7j.win/mule.dll YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ YRP/Borland_Delphi_v40_v50 [+]
PE32+ 2017-11-23 13:45:09http://dd0s.xyz/mr/audiodg.exe YRP/Microsoft_Visual_Cpp_80_DLL YRP/IsPE64 YRP/IsConsole YRP/IsBeyondImageSize [+]
PE32 2017-11-23 13:45:11http://dd0s.xyz/mr/curl.exe YRP/IsPE32 YRP/IsConsole YRP/IsBeyondImageSize YRP/domain [+]
PE32 2017-12-10 01:45:11http://185.117.73.105/panel/mr/curl.exe YRP/IsPE32 YRP/IsConsole YRP/domain YRP/IP [+]
PE32+ 2017-12-10 01:45:15http://185.117.73.105/panel/mr/audiodg.exe YRP/Microsoft_Visual_Cpp_80_DLL YRP/IsPE64 YRP/IsConsole YRP/IsBeyondImageSize [+]
PE32+ 2018-03-06 20:28:44http://119.29.236.22/minxmr.exe YRP/Microsoft_Visual_Cpp_80_DLL YRP/IsPE64 YRP/IsConsole YRP/IsBeyondImageSize [+]
PE32 2018-03-06 20:39:40http://120.25.231.162/5521.exe YRP/Armadillo_v171 YRP/Microsoft_Visual_Cpp_v60 YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional YRP/Microsoft_Visual_Cpp_50 [+]
PE32+ 2018-03-07 04:20:56http://172.104.107.30/cpu64.exe YRP/Microsoft_Visual_Cpp_80_DLL YRP/IsPE64 YRP/IsConsole YRP/IsBeyondImageSize [+]
PE32 2018-03-22 11:11:31User Submission FlorianRoth/BTC_Miner_lsass1_chrome_2
PE32 2018-07-05 02:50:35http://track-systemgo.ru/api/downloads/CPU/mi... YRP/IsPE32 YRP/IsConsole YRP/IsBeyondImageSize YRP/domain [+]
PE32 2018-07-13 11:19:18User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
PE32 2018-11-14 09:17:53User Submission YRP/IsPE32 YRP/IsWindowsGUI YRP/MinGW_1 YRP/domain [+]
PE32 2018-11-15 02:20:51User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
PE32 2021-05-18 19:03:35User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]