SHA256 Hash File type Added Source Yara Hits
ISO-8859 2022-03-07 12:01:40User Submission YRP/domain YRP/contentis_base64 YRP/lsadump
ISO-8859 2022-03-07 12:01:39User Submission YRP/domain YRP/contentis_base64 YRP/lsadump
ISO-8859 2022-03-07 12:01:39User Submission YRP/domain YRP/contentis_base64 YRP/Misc_Suspicious_Strings YRP/lsadump
Python 2019-09-26 02:08:06User Submission YRP/domain YRP/IP YRP/url YRP/contentis_base64 [+]
ISO-8859 2019-09-26 01:22:29http://c32.19aq.com/Linux/Dos/%BB%F9%B1%BE%B3... YRP/domain YRP/IP YRP/url YRP/contentis_base64 [+]
ISO-8859 2019-09-26 01:21:57http://c32.19aq.com/Linux/Dos/%BB%F9%B1%BE%B3... YRP/domain YRP/IP YRP/contentis_base64 YRP/System_Tools [+]
Composite 2018-11-20 05:51:50User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api YRP/maldoc_getEIP_method_1 [+]
UTF-8 2018-03-07 03:19:54http://172.104.107.30/nishang/powerpreter/Pow... CuckooSandbox/vmdetect YRP/powershell YRP/domain YRP/IP [+]
ASCII 2018-03-07 03:16:49http://172.104.107.30/nishang/Gather/Get-Pass... YRP/powershell YRP/domain YRP/url YRP/contentis_base64 [+]
ASCII 2018-03-07 03:14:17http://167.114.128.52/Invoke-PowerDump.ps1 YRP/powershell YRP/domain YRP/url YRP/contentis_base64 [+]