MD5 Hash File type Added Source Yara Hits
3db88b7f162fe682252a5bc5c5f1a74f PE32 2017-11-30 00:45:15http://goldmaxstudios.com/wp-admin/js/quote.e... YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
5c8b670c503455baafbff400a446cf82 PE32 2018-05-22 18:27:55 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
0e30229ffc741ad30ed61a679cd11fbb PE32 2018-05-22 18:28:03 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
726b49bd3ce13a3f7c1ccf7b5d66e737 PE32 2018-05-23 05:17:48 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
41d97b5ae8f1f2c57a6e9a8bb114b7f7 PE32 2018-06-04 11:17:59 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
55d5cd359765c5078d1e7eeeb2656752 PE32 2018-06-08 10:22:36http://www.xn--m3cdha3exabl1bc9a7s.com/update... YRP/possible_includes_base64_packed_functions YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
38195d8d29980dd0cf5c1fcfbb16dacd PE32 2018-06-09 00:55:03http://92.63.197.60/o.exe YRP/possible_includes_base64_packed_functions YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
7dce7a74764eb7c67d21a32bc579453d PE32 2018-06-22 10:22:16 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
22016c948f6109a1efb2e9efa4c094ba PE32 2018-06-23 09:04:57 YRP/possible_includes_base64_packed_functions YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
072cbdc290f6fa1f63d1dae36bea874e PE32 2018-07-01 13:13:08 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
276e296610f76cd0410953a857c8499a PE32 2018-07-01 13:18:15 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
8dc4ef5162690b49c6fd643a1271efa7 PE32 2018-07-01 13:18:24 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
15da976cabeac447e80941e9c406303b PE32 2018-07-01 13:58:30 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
df1206adfc08eb9df5e4ef8fd4180344 PE32 2018-07-01 14:08:29 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
e652b17e1831910a491bbba576f0a4e2 PE32 2018-07-01 14:08:33 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
c36da046044d19b9dbc82d982ba631ce PE32 2018-07-01 14:18:29 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
a5634610f75e7cf201e7014618fa1386 PE32 2018-07-01 14:18:32 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
1aff9aa7530b77cca57134d80298075d PE32 2018-07-01 14:28:29 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
c3a57434bb43e3ca3eb39fdd6c40e906 PE32 2018-07-01 14:28:32 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
c2442b388ccbab4927527053075cbc66 PE32 2018-07-01 14:28:36 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
4655f722cd6c927f099efe656c2aa9f4 PE32 2018-07-01 16:58:36 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
953dcf338689eed3a5fd5093dfae52dc PE32 2018-07-01 17:18:31 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
3597983fc7a344e850ad760971700a6d PE32 2018-07-01 17:18:34 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
32d264b58dd8ce560c024bf1d0cfab4f PE32 2018-07-01 17:18:37 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
8274e36d66b7ec03a0a58609bd017efd PE32 2018-07-01 17:28:30 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
aae98a44b600dfa4ca46a58a8923e0f1 PE32 2018-07-01 17:28:33 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
5f9707e826899ba3827cc99b9450d967 PE32 2018-07-01 17:38:14 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
37bb3401124cf83ce867f89c7de1e33e PE32 2018-08-29 03:18:59http://checkandswitch.com/afile/7.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
11c4764d1c237871935fe1a02d93abe7 PE32 2018-09-16 12:48:43http://neuroinnovacion.com.ar/gWrMM6I YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
5f2a1179725ecee97356ed15f5b0e582 PE32 2018-09-22 09:48:53http://checkandswitch.com/afile/7.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
9a3c956e6784a7f4e3dc6781cad1ee2c PE32 2018-09-22 14:08:05http://minsk-nl.ru/delivery.exe YRP/possible_includes_base64_packed_functions YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
20b999e0a6a582f925c1ef0bb93bd1bb PE32 2018-09-25 01:04:41 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
61fcb9f40ab6ff336186fe5e5f35743d PE32 2018-09-25 01:05:19 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
8607847aa4c35cd871bc641e02f5a770 PE32 2018-09-25 01:06:48 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
cfa2e5bcdaf45299dc132d9a75678556 PE32 2018-09-25 01:07:09 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
288e1979ca1be4e6f1cb5535748f05e0 PE32 2018-10-16 17:14:27http://midnighcrypt.us/update/update.php YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
021ed69a5ebafb4ca85c4e201ed37137 PE32 2018-11-01 13:02:34http://92.63.197.48/vnc.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
e8afe2a4d1823dc7f24568558d71c208 PE32 2018-11-01 13:02:36http://92.63.197.48/t.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
5d9775622b5e7123d5796d4de5dc2839 PE32 2018-11-01 13:43:59http://92.63.197.48/s.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
fee584173bc226dae0d977801dea39c8 PE32 2018-11-01 15:42:34http://cavanasipontum.ru/bulba/smcim.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
d25dfeaa261029c6275c476d0210100a PE32 2018-11-01 18:32:45http://92.63.197.60/t.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
c93883bf7db9fb0649610a29a2fdfab8 PE32 2018-11-02 09:18:13http://92.63.197.60/t.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
a7b3c6f4acfc370457f3b35431e78503 PE32 2018-11-14 03:26:08 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
97c5600f8fa41dbfcdb0648ab6047d4f PE32 2018-12-10 13:41:31http://d32iuls6yyc2dt.cloudfront.net/im.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/Visual_Cpp_2008_Release_Microsoft [+]
481dd3ab153df15548e4205151cc263e PE32 2019-01-08 07:32:36 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
36398fbded60bb321bb79c69aad669e0 PE32 2019-02-13 15:25:01 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
0bb941f96f633e26405011e3e7e10574 PE32 2019-03-12 14:44:11 YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/maldoc_find_kernel32_base_method_1 [+]
c795267c927f049f9f50a88d7aba5046 PE32 2019-03-12 14:54:25 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
7e148c9f21d3543cc034b26324068f7d PE32 2019-05-08 12:48:15http://masloperukwed.top/document/okques.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
751675a571dd42a5f2f879a3612b885c PE32 2019-05-22 09:09:07http://gcleaner.info/koseu.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
ff38b0885297ce98518fc479a00f12c8 PE32 2019-06-03 05:36:14http://pezhwak.de/media/doc.exe YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
f953b1ccd04ef4ddc45b40f57c4c9034 PE32 2019-06-07 16:44:28http://sinastorage.com/yun2016/B32d.rar YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsPacked YRP/HasDebugData [+]
9df5dc36ded65696ac6e36429e26a7d4 PE32 2019-06-20 11:36:50http://107.173.57.153/table.png YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
ba8869744b32796d25afeb3c0647c3a7 PE32 2019-07-04 08:08:17http://80.85.155.70/2.php YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
00250eb7b52c068df90e7e4afb5b8b1d PE32 2019-07-04 23:08:39http://aiiaiafrzrueuedur.ru/o.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
3e26d2428d90c95531b3f2e700bf0e4c PE32 2019-07-05 02:57:26http://osheoufhusheoghuesd.ru/2.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
ffaa945215f29ebe8b8f0c1028e5c01e PE32 2019-07-06 22:18:52http://80.85.155.70/2.php YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
83977996b4c6d8e42709ccf794f7af26 PE32 2019-07-06 22:27:11http://193.32.161.77/5.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasDebugData [+]
183b9b7c52975a33a2d68102042041f7 PE32 2019-07-12 12:17:53http://data.yx1999.com/cp/sl_e_062701.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/IsBeyondImageSize [+]
03970322d81c781d87d9ec77f91648f0 PE32 2019-07-12 12:17:56http://data.yx1999.com/cp/sl_e_0617.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasOverlay [+]
45cc730a52b00936f2edded4e2c1960a PE32 2019-07-19 07:57:46http://data.yx1999.com/cp/sl_e_062701.exe YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/IsBeyondImageSize [+]
3769785aafd1cf4b5bba1058d6e32f77 PE32 2019-07-23 03:58:01 YRP/Obsidium_v10061 YRP/IsPE32 YRP/IsWindowsGUI YRP/HasRichSignature [+]
6a38b0268846069347746ac85e945b92 PE32 2019-07-28 10:28:19 YRP/Obsidium_v10061 YRP/Visual_Cpp_2005_Release_Microsoft YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]
87d6fb557ed0e2321a7dc314fe328089 PE32 2019-07-28 14:15:09 YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 YRP/IsPE32 [+]
fbfc66310679565995ff5fad4472af3e PE32 2019-07-30 19:51:59 CuckooSandbox/vmdetect YRP/Obsidium_v10061 YRP/VC8_Microsoft_Corporation YRP/Microsoft_Visual_Cpp_8 [+]