MD5 Hash File type Added Source Yara Hits
0694c33cce82504d0e88a4276e2bbe5e ASCII 2018-11-13 15:36:18User Submission CuckooSandbox/embedded_win_api FlorianRoth/Msfpayloads_msf_ref
2e048e53dc6b3c27f5f7e72606102cfd ASCII 2018-11-14 18:43:51User Submission CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/Empire_PowerShell_Framework_Gen4 [+]
e5720597833c824b43bd2ffe12f1c319 ASCII 2019-06-23 02:02:10https://d1g83yf6tseohy.cloudfront.net/documen... CuckooSandbox/embedded_win_api FlorianRoth/Msfpayloads_msf_ref
78b65c3d70aab62bc55d9b2ba5435fd1 data 2019-08-21 14:49:07User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect FlorianRoth/clearlog [+]
00f417da9729b97e015dc70c95054592 ASCII 2019-10-25 22:22:54User Submission CuckooSandbox/embedded_win_api YRP/powershell YRP/domain YRP/url [+]
6bfa9e102375e098fe886ffc026c45db data 2019-11-06 22:00:55User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect YRP/Borland [+]
9b8cff9db1fdc8d5ca111f3ee008a0d8 data 2020-02-28 19:53:27User Submission CuckooSandbox/embedded_win_api YRP/possible_includes_base64_packed_functions YRP/powershell YRP/domain [+]
a8076b7ab2fba75f3bd51672b5347386 data 2020-02-29 20:03:29User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect YRP/possible_includes_base64_packed_functions [+]
ce346485251f9c34102425534a9a389d ASCII 2020-04-08 16:57:41User Submission CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/Empire_PowerShell_Framework_Gen4 [+]