SHA256 Hash File type Added Source Yara Hits
data 2018-07-23 22:38:42User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect FlorianRoth/Empire_Get_SecurityPackages [+]
FoxPro 2019-06-29 17:13:41User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_win_api YRP/maldoc_find_kernel32_base_method_1 YRP/domain [+]
FoxPro 2019-06-29 17:14:13User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_win_api YRP/maldoc_find_kernel32_base_method_1 YRP/domain [+]
PE32 2019-08-29 19:19:15http://gxx.monerov10.com:8800/gx.exe FlorianRoth/Regin_Related_Malware
PE32 2019-08-30 19:30:57http://gxx.monerov10.com:8800/gx.exe FlorianRoth/Regin_Related_Malware
data 2019-10-25 22:21:42User Submission CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect YRP/webshell_iMHaPFtp_2 [+]
ASCII 2019-10-25 22:24:03User Submission YRP/domain YRP/url YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]
ASCII 2019-10-25 22:24:03User Submission YRP/domain YRP/url YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]
ASCII 2019-10-26 14:42:56User Submission YRP/domain YRP/url YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]