MD5 Hash File type Added Source Yara Hits
2ea061462cb09e8e390cd4996d0f932e DOS 2018-03-06 20:29:35http://13.82.96.22/exploit/launcher.bat CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/IP [+]
af17a2c4c38621b78d2714dc18dae5e2 ASCII 2018-03-07 04:07:59http://172.104.107.30/PowerSploit/CodeExecuti... CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/IP [+]
9fb0dd54c5b2abae77f1943ff5dd6076 ASCII 2018-03-07 04:08:02http://172.104.107.30/PowerSploit/CodeExecuti... CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/contentis_base64 [+]
281b638fa7b15890b23138bd1e29df41 MS 2019-02-23 09:13:47User Submission CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/IP [+]
642592a0549cec2ab7acbd5ccd96f858 Composite 2019-04-08 12:14:28User Submission CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/IP [+]
f2f36d8cc4b5f5a15f87d41b613b37ac ASCII 2019-05-05 01:51:42http://196.52.9.47/Invoke--Shellcode.ps1 CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/IP [+]
415f903673236e2b08241a240fe68019 ASCII 2019-07-17 14:11:31User Submission CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/contentis_base64 [+]
3cc12e71e606774eafc25eee965a6acc ASCII 2019-10-25 22:22:55User Submission YRP/powershell YRP/domain YRP/IP YRP/url [+]