MD5 Hash File type Added Source Yara Hits
84e3ad0d62d21739d632d2106864e79e ELF 2017-10-16 01:20:43 CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
b3d26632c4077e731ef2da329974519d ELF 2017-10-16 01:33:40 CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
24734ef952fe363415cd4c2f7322276f ELF 2017-10-16 01:37:29 CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
afea8821723bb98d71fb7cb4e6493af6 PE32 2018-02-23 16:56:50 YRP/Armadillo_v171 YRP/Microsoft_Visual_Cpp_v60 YRP/Microsoft_Visual_Cpp_v50v60_MFC_additional YRP/Microsoft_Visual_Cpp_50 [+]
d85585e12485f39ce4c147c8d9085852 MSVC 2018-03-07 00:17:16http://103.68.190.250/Sources//Advance/BJWJ/B... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]
7aad42acc7a2d8773b9a2b7859a0406c data 2018-03-07 03:52:15http://103.68.190.250/Sources//Advance/Bootki... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
81b07363bdfc6ac18bc192af0403a977 MSVC 2018-03-07 03:52:35http://103.68.190.250/Sources//Advance/Bootki... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
b110b4803fcfcf80e39db1f225622952 data 2018-03-07 04:20:31http://103.68.190.250/Sources//Advance/FakeDl... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
3b754868d5432725cfa648f7a614fc53 MSVC 2018-03-07 04:20:46http://103.68.190.250/Sources//Advance/FakeDl... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
96718d964a9e3a708417fb5672617ca9 data 2018-03-07 04:24:59http://103.68.190.250/Sources//Advance/Locker... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
5eb9633604caa29007ea569e290c45c0 MSVC 2018-03-07 04:25:11http://103.68.190.250/Sources//Advance/Locker... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
6ce4e420b73e5baf0129b121a2939fdf data 2018-03-07 04:25:32http://103.68.190.250/Sources//Advance/Locker... CuckooSandbox/embedded_win_api YRP/domain YRP/contentis_base64 YRP/DebuggerException__SetConsoleCtrl [+]
7a649649dcbd67b1d0cf4a94cfeb776f UTF-8 2018-03-18 03:07:00 CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect YRP/domain YRP/url [+]
f901c645188f9c80afa8f49174f065ce PE32+ 2018-05-24 00:58:05 CuckooSandbox/vmdetect YRP/webshell_iMHaPFtp_2 YRP/webshell_caidao_shell_guo YRP/webshell_cihshell_fix [+]
970cfa22fac19f6df529f94d762abb58 MSVC 2018-11-13 21:30:17 CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect YRP/domain YRP/contentis_base64 [+]