SHA256 Hash File type Added Source Yara Hits
ELF 2017-10-16 03:37:29User Submission CuckooSandbox/shellcode CuckooSandbox/embedded_pe CuckooSandbox/embedded_win_api CuckooSandbox/vmdetect [+]
PE32+ 2018-05-24 02:58:05User Submission CuckooSandbox/vmdetect YRP/webshell_iMHaPFtp_2 YRP/webshell_caidao_shell_guo YRP/webshell_cihshell_fix [+]
PE32 2018-09-02 14:45:25http://www.heartware.dk/AudioConverter.EXE YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
PE32 2018-09-22 02:49:10http://www.heartware.dk/ChapterMaker.EXE YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
MS-DOS 2018-09-25 02:54:59User Submission YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]
PE32 2019-06-03 02:01:22http://perso.wanadoo.es/provedoresbrasil/rela... YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]
PE32 2019-11-24 00:31:29User Submission YRP/AHTeam_EP_Protector_03_fake_PCGuard_403_415_FEUERRADER YRP/Borland YRP/MaskPEV20yzkzero YRP/eXPressorv14CGSoftLabs [+]
PE32 2019-11-24 10:39:51User Submission YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
PE32 2019-11-24 11:08:39User Submission YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/eXpressor_v145_CGSoftLabs [+]
MS-DOS 2019-11-24 12:46:09User Submission YRP/Microsoft_Visual_Basic_v50 YRP/eXPressorv14CGSoftLabs YRP/IsPE32 YRP/IsWindowsGUI [+]
MS-DOS 2020-01-13 14:53:53User Submission YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]
MS-DOS 2020-01-13 19:21:57User Submission YRP/eXPressorv14CGSoftLabs YRP/IsPE32 YRP/IsWindowsGUI YRP/IsPacked [+]
MS-DOS 2020-01-15 09:03:36User Submission YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]
PE32 2020-01-15 10:46:17User Submission YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
PE32 2020-01-15 11:33:09User Submission YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/eXpressor_v145_CGSoftLabs [+]
PE32 2020-01-15 11:33:59User Submission YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
PE32 2020-01-15 11:46:08User Submission YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_V145x_CGSoftLabs YRP/Borland_Delphi_30_additional YRP/Borland_Delphi_30_ [+]
PE32 2020-06-27 11:47:35User Submission YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]
PE32 2020-06-29 23:22:39User Submission YRP/eXPressor_1451_CGSoftLabs_additional YRP/eXpressor_v13x YRP/Microsoft_Visual_Cpp_v50v60_MFC YRP/eXPressor_1451_CGSoftLabs_h [+]