SHA256 Hash File type Added Source Yara Hits
Non-ISO 2022-02-14 02:56:16User Submission CuckooSandbox/vmdetect YRP/domain YRP/IP YRP/contentis_base64 [+]
data 2022-02-14 02:56:10User Submission CuckooSandbox/vmdetect YRP/domain YRP/IP YRP/contentis_base64 [+]
ASCII 2022-02-14 02:56:08User Submission YRP/domain YRP/contentis_base64 YRP/Misc_Suspicious_Strings YRP/FavoriteStrings [+]
ELF 2021-10-12 19:06:03User Submission YRP/domain YRP/IP YRP/contentis_base64 YRP/MD5_Constants [+]
ELF 2021-07-05 13:01:02User Submission CuckooSandbox/embedded_pe YRP/possible_includes_base64_packed_functions YRP/domain YRP/IP [+]
ELF 2021-07-05 13:00:57User Submission YRP/possible_includes_base64_packed_functions YRP/domain YRP/IP YRP/url [+]
exported 2019-10-25 20:22:25User Submission YRP/IsSuspicious YRP/domain YRP/IP YRP/contentis_base64 [+]
exported 2019-10-25 20:22:24User Submission CuckooSandbox/vmdetect YRP/domain YRP/IP YRP/url [+]
ASCII 2019-09-16 02:38:44User Submission YRP/domain YRP/url YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]
PE32 2018-11-14 17:32:33User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
ISO-8859 2018-09-17 00:51:28User Submission YRP/domain YRP/IP YRP/contentis_base64 YRP/Misc_Suspicious_Strings [+]
ASCII 2018-09-17 00:51:24User Submission YRP/domain YRP/contentis_base64 YRP/ccrewQAZ
ASCII 2018-09-17 00:51:22User Submission YRP/domain YRP/contentis_base64 YRP/ccrewQAZ
ASCII 2018-07-11 15:51:55User Submission YRP/domain YRP/IP YRP/contentis_base64 YRP/ccrewQAZ
Little-endian 2018-07-11 15:51:54User Submission YRP/domain YRP/IP YRP/ccrewQAZ
PE32 2018-06-22 19:10:59User Submission YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 YRP/IsWindowsGUI [+]
ELF 2018-06-22 13:34:57User Submission CuckooSandbox/embedded_pe CuckooSandbox/vmdetect YRP/possible_includes_base64_packed_functions YRP/domain [+]
exported 2018-06-08 15:10:00User Submission YRP/domain YRP/IP YRP/url YRP/contentis_base64 [+]
PE32+ 2018-05-24 00:58:05User Submission CuckooSandbox/vmdetect YRP/webshell_iMHaPFtp_2 YRP/webshell_caidao_shell_guo YRP/webshell_cihshell_fix [+]
PE32 2018-03-06 19:57:34http://94.130.104.170/9c17f267f79597ee01515f5... YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/IsPE32 YRP/IsWindowsGUI YRP/HasRichSignature [+]
ELF 2017-10-16 01:37:29User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
ELF 2017-10-16 01:33:40User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
ELF 2017-10-16 01:20:43User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]