File Search Engine
  • Search
  • Syntax
  • Fields
  • API
  • 104.238.60.238 · WindowsDefender.exe

    /

    United States · Gwy It Pty Ltd

    SHA1: 47482410c4a279e471c32902384a1b402f42c658
    SHA256: 05561d24e3ae64681d4e7849738a45c87a475f66db721e32817b984d44a9892c
    application/x-msdownload
    703.50KB
    2025-12-06 01:54:44 +0000 UTC

  • down.lhip.cc · WindowsDefender.exe

    /ad/

    China · NINGBO, ZHEJIANG Province, P.R.China.

    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: 75e7d20bc42572a7dc1b9a12dc464576079b90b8
    SHA256: d0b6965be9cc036a316acb456491562aea12d2bb52af12a475966ee7b41fc000
    application/octet-stream
    459.50KB
    2024-12-17 04:43:18 +0000 UTC

  • down.lhip.cc · WindowsDefender.exe

    /ad/

    China · NINGBO, ZHEJIANG Province, P.R.China.

    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: 75e7d20bc42572a7dc1b9a12dc464576079b90b8
    SHA256: d0b6965be9cc036a316acb456491562aea12d2bb52af12a475966ee7b41fc000
    application/octet-stream
    459.50KB
    2024-12-17 04:43:18 +0000 UTC

  • 183.136.206.159 · WindowsDefender.exe

    /ad/

    China · NINGBO, ZHEJIANG Province, P.R.China.

    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: 75e7d20bc42572a7dc1b9a12dc464576079b90b8
    SHA256: d0b6965be9cc036a316acb456491562aea12d2bb52af12a475966ee7b41fc000
    application/octet-stream
    459.50KB
    2024-02-11 23:20:38 +0000 UTC