File Search Engine
  • Search
  • Syntax
  • Fields
  • API
  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro

    SHA1: 2bf0e439c3a29278f89e24a71249a811cf3fd7ab
    SHA256: 6cdd13b0d4e25c6edeeaa3b11b99b862c7842f1b954cd7b5dc0f1baf49f9e433
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro

    SHA1: 70ee102eee061cb75bbe6b25497d903b64ae993e
    SHA256: d89dce4030197c0be165521cb5f744856ce0d7576828eb0b85e121ad72c7b0d2
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs

    SHA1: 35e0c68066ba462fcc785fcf70aff6c4ea7dcc91
    SHA256: c2d1bf555ed06ce6e43be94a249ddf82257e77846278f10e269b14d9de5ba1dc
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • pypi.hadiko.de · workbench-0.3.2.tar.gz

    /packages/0c/4e/6d3ad2534e60fad14d8f837c2c1a3f1657f2b4aff8a589b3519c2a448dc3/

    Germany · Universitaet Stuttgart

    Yara INDICATOR_EXE_Packed_SimplePolyEngine From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_eXPressor From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara RAT_Ap0calypse From Florian Roth by Kevin Breen <kevin@techanarchy.net>
    Yara RAT_DarkRAT From Florian Roth by Kevin Breen <kevin@techanarchy.net>
    Download archived sample
    The password is "infected"

    SHA1: 2635fd0b6ec8accd110ec13ee4600189aa9a6f19
    SHA256: 30aecf5ecb61fdeab5ea92a25fae265aea6c48a85b145cd4c4b8bfae44de42c4
    application/x-gzip
    8.72MB
    2014-08-29 21:59:03 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro
    Yara INDICATOR_EXE_DotNET_Encrypted From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_VMProtect From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_AgileDotNet From AlienVault by ditekSHen
    Yara SUSP_NET_NAME_ConfuserEx From Florian Roth by Arnim Rupp
    Yara IMPLANT_4_v7 From Florian Roth by US CERT

    SHA1: 69188e4f172b3f3c332eea54c019a716aec9c346
    SHA256: 77dadbf119ac92a53db287e86e3bd4e631b1acebe6b6cd17ba5720ec04906a46
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro
    Yara INDICATOR_EXE_DotNET_Encrypted From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_VMProtect From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_AgileDotNet From AlienVault by ditekSHen
    Yara SUSP_NET_NAME_ConfuserEx From Florian Roth by Arnim Rupp

    SHA1: 37b106e7d498595ddb23f2a5fefcfe66c1c8618b
    SHA256: 5a2f84890cf15016a4af129c86dfceae804229208f398f8556029136162ac0a2
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro
    Yara INDICATOR_EXE_DotNET_Encrypted From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_VMProtect From AlienVault by ditekSHen

    SHA1: efe4e2390a4483ca3c660e9f0d7b235ae9958bf8
    SHA256: c325921e9e86be1e4bf379fc80635890fef97a1d6cb14ebfc0deb1f2a9bcba23
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro
    Yara INDICATOR_EXE_DotNET_Encrypted From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_VMProtect From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_AgileDotNet From AlienVault by ditekSHen

    SHA1: 7461bd486f40674896cd40149807e8272648e29c
    SHA256: 64b20985991992ba3a7773f59c91113fcc8dd577ab7f109196571eb432697e33
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • mail.reveantivirus.com · Malware Samples.zip

    /reveantivirus.com/linux/Builds/Abhishek_Samples/

    United States · IO

    Yara INDICATOR_EXE_Packed_Dotfuscator From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_UPolyX From AlienVault by ditekSHen
    Yara SUSP_XORed_MSDOS_Stub_Message From Florian Roth by Florian Roth
    Yara INDICATOR_EXE_Packed_ConfuserEx From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Fody From AlienVault by ditekSHen
    Yara Base64_encoded_Executable From Florian Roth by Florian Roth (Nextron Systems)
    Yara detect_Redline_Stealer From AbuseCH by Varp0s
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Yara Win32_Ransomware_WannaCry From ReversingLabs by ReversingLabs
    Yara INDICATOR_EXE_Packed_SmartAssembly From AlienVault by ditekSHen
    Yara Nanocore_RAT_Gen_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara IronTiger_Gh0stRAT_variant From Florian Roth by Cyber Safety Solutions, Trend Micro
    Yara INDICATOR_EXE_DotNET_Encrypted From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_VMProtect From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_AgileDotNet From AlienVault by ditekSHen
    Yara SUSP_NET_NAME_ConfuserEx From Florian Roth by Arnim Rupp
    Yara IMPLANT_4_v7 From Florian Roth by US CERT
    Yara INDICATOR_EXE_Packed_MPress From AlienVault by ditekSHen
    Yara INDICATOR_EXE_Packed_Goliath From AlienVault by ditekSHen
    Yara Typical_Malware_String_Transforms From Florian Roth by Florian Roth (Nextron Systems)
    Yara INDICATOR_EXE_Packed_aPLib From AlienVault by ditekSHen
    Yara Win32_Ransomware_CryptoJoker From ReversingLabs by ReversingLabs
    Yara SUSP_XORed_Mozilla From Florian Roth by Florian Roth (Nextron Systems)
    Yara Cloaked_RAR_File From Florian Roth by Florian Roth (Nextron Systems)
    Yara Office_as_MHTML From Florian Roth by Florian Roth (Nextron Systems)
    Yara EXE_extension_cloaking From Florian Roth by Florian Roth (Nextron Systems)
    Yara SUSP_Base64_Encoded_Hex_Encoded_Code From Florian Roth by Florian Roth (Nextron Systems)
    Yara FeliksPack3___PHP_Shells_ssh From Florian Roth by Florian Roth (Nextron Systems)
    Yara connectback2_pl From Florian Roth by Neo23x0 Yara BRG + customization by Stefan -dfate- Molls

    SHA1: 19b89b7658bf4ffc2c0faa55edf7f026c3ab98e9
    SHA256: 779e608c575356ac6ff1c216abdcb8fa25250580b5b85a2e94ff5ff9f0cf77d6
    application/zip
    1.29GB
    2018-06-21 08:03:32 +0000 UTC

  • 81.182.242.95 · keygen.exe

    /munkalap/gallery/01_Install/Adobe/Adobe.Photoshop.Lightroom.v4.4.Multilingual.Incl.Keymaker-CORE/

    Hungary · Magyar Telekom plc.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: f23dcacf1b607084101745146d9e496a524789d5
    SHA256: 4ca42139353bf5f5d6fbe68163fcaa7d5457cc33bca3a094ecdffc3230553dbc
    application/x-msdos-program
    139.31KB
    2014-12-08 09:14:21 +0000 UTC

  • 183.136.206.159 · Udp.zip

    /nike/dd/

    China · NINGBO, ZHEJIANG Province, P.R.China.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: 7911aa8f071e3cf697c1b6c289c09fce5f4be127
    SHA256: 2256f8ba97afcb4d26e46508c7314d430c535def8e5dd436b97e96ca82dd5bff
    application/zip
    24.97KB
    2024-02-11 23:33:28 +0000 UTC

  • szedibauofficenas.direct.quickconnect.to · keygen.exe

    /munkalap/gallery/01_Install/Adobe/Adobe.Photoshop.Lightroom.v4.4.Multilingual.Incl.Keymaker-CORE/

    Hungary · Magyar Telekom plc.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: f23dcacf1b607084101745146d9e496a524789d5
    SHA256: 4ca42139353bf5f5d6fbe68163fcaa7d5457cc33bca3a094ecdffc3230553dbc
    application/x-msdos-program
    139.31KB
    2014-12-08 09:14:21 +0000 UTC

  • synoinstall-vzzti5l4sxp7f4fp.direct.quickconnect.to · keygen.exe

    /munkalap/gallery/01_Install/Adobe/Adobe.Photoshop.Lightroom.v4.4.Multilingual.Incl.Keymaker-CORE/

    Hungary · Magyar Telekom plc.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: f23dcacf1b607084101745146d9e496a524789d5
    SHA256: 4ca42139353bf5f5d6fbe68163fcaa7d5457cc33bca3a094ecdffc3230553dbc
    application/x-msdos-program
    139.31KB
    2014-12-08 09:14:21 +0000 UTC

  • ferenczgabriella.ratalaltal.hu · keygen.exe

    /munkalap/gallery/01_Install/Adobe/Adobe.Photoshop.Lightroom.v4.4.Multilingual.Incl.Keymaker-CORE/

    Hungary · Magyar Telekom plc.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: f23dcacf1b607084101745146d9e496a524789d5
    SHA256: 4ca42139353bf5f5d6fbe68163fcaa7d5457cc33bca3a094ecdffc3230553dbc
    application/x-msdos-program
    139.31KB
    2014-12-08 09:14:21 +0000 UTC

  • 81.182.242.95 · keygen.exe

    /munkalap/gallery/01_Install/Adobe/Adobe.Photoshop.Lightroom.v4.4.Multilingual.Incl.Keymaker-CORE/

    Hungary · Magyar Telekom plc.

    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: f23dcacf1b607084101745146d9e496a524789d5
    SHA256: 4ca42139353bf5f5d6fbe68163fcaa7d5457cc33bca3a094ecdffc3230553dbc
    application/x-msdos-program
    139.31KB
    2014-12-08 09:14:21 +0000 UTC