MD5 Hash File type Added Source Yara Hits
84e3ad0d62d21739d632d2106864e79e ELF 2017-10-16 01:20:43 CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
b3d26632c4077e731ef2da329974519d ELF 2017-10-16 01:33:40 CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
43df0cf11a9c22a57f0732e9ad7c5ce5 PE32 2018-05-19 00:51:53http://aspmailcenter2.com/test.exe YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
51a7737d824142f8a2ba6d510f205c81 DOS 2018-06-22 07:20:35 YRP/domain YRP/url YRP/contentis_base64 YRP/Dropper_Strings [+]
bda0abb981f9753f5f3177cbfb11f281 DOS 2018-06-22 11:11:33 YRP/domain YRP/url YRP/contentis_base64 YRP/Dropper_Strings [+]
b8a0afc2c1d7a01b22637c805b6f668c PE32 2018-06-23 11:19:02 YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/IsPE32 YRP/IsConsole YRP/HasDebugData [+]
bbc8c332af00a0931a8d7dc325cb42fc Composite 2018-06-23 13:36:44 YRP/office_document_vba YRP/Contains_VBA_macro_code YRP/domain YRP/contentis_base64 [+]
90bb92d708b25708edb47ef00077e098 ASCII 2018-08-20 13:58:22 YRP/domain YRP/url YRP/contentis_base64 FlorianRoth/Certutil_Decode_OR_Download
d7f47fa1f11d6215453ce8325f335ea5 ASCII 2018-09-05 08:48:00 FlorianRoth/Certutil_Decode_OR_Download
101f0a7c82b11184f9f9056a54baf614 ASCII 2018-09-05 08:48:59 CuckooSandbox/vmdetect FlorianRoth/Certutil_Decode_OR_Download
a9203b13bd91650b3ab7057e9ea3222c MS-DOS 2018-11-13 14:12:26 CuckooSandbox/vmdetect YRP/possible_includes_base64_packed_functions YRP/powershell YRP/maldoc_find_kernel32_base_method_1 [+]
ce8ae908dab91cab7a12d7f0d4424f69 ASCII 2018-11-13 15:04:42 YRP/domain YRP/contentis_base64 FlorianRoth/Certutil_Decode_OR_Download
d971063d8879d8fcd2943b339bff116f ASCII 2018-11-13 21:31:52 FlorianRoth/Certutil_Decode_OR_Download
00898ca39218fe5c1a2357f9061bd0a6 ASCII 2018-11-14 02:23:07 FlorianRoth/Certutil_Decode_OR_Download