File Search Engine
  • Search
  • Syntax
  • Fields
  • API
  • pypi.corp.tevian.ru · pyx_core-1.28.0.tar.gz

    /packages/00/7b/22ae118e38e9829515b76d5e30659dc082830d829069c54768a0084ccccc/

    ·

    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: 9602e1af54a6b98dc11378c1df66aa4577c68b20
    SHA256: c675deef27f4bcc02a536e3a26f820a3e8899b06a8b3f5a0c5d97ee9c91fb393
    application/octet-stream
    2.20MB
    2025-08-26 15:23:36 +0000 UTC

  • pypi.corp.tevian.ru · machineconfig-8.34.tar.gz

    /packages/00/24/1ed291352bcb002e1f98e7d26b7d18d3d4f79bee24dc1fdd10ebcc772249/

    ·

    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: 5a0f1f5a590f4b22b6847c56127e97d5a36fe35c
    SHA256: 911f9247df0a9c6bd46ef784042ec6fa0565892e3f6400ce48e52cdbafb081c3
    application/octet-stream
    539.36KB
    2025-12-15 00:33:37 +0000 UTC

  • 61.238.115.92 · netsh端口转发管理工具.zip

    /3软件和工具/

    Hong Kong · HK Broadband Network Ltd.

    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara INDICATOR_EXE_Packed_RLPack From AlienVault by ditekSHen
    Download archived sample
    The password is "infected"

    SHA1: 5709707ff036ef2359c89af2cabc1a8c2581c84d
    SHA256: e30b58ff59fbafe7cc94676f1064fc748eafad3d666e2310b9b3c2c5332dd967
    application/zip
    623.56KB
    2024-10-11 19:19:09 +0000 UTC

  • download.wxcount.com · Bridge-To-Kubernetes.tar.gz

    /github.com/Azure/

    China · China Telecom Group

    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara p0wnedPotato From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: 2faff24ef38bee053a5d64acb8856586d4bea39b
    SHA256: 996917cc75f5d173f136c6c384aff2043cf2ae1a7b3c1673839dce293e825c7b
    application/octet-stream
    7.15MB
    2023-11-10 16:42:20 +0000 UTC

  • parrot.elhacker.net · payloadsallthethings_2.1.orig.tar.gz

    /pool/main/p/payloadsallthethings/

    Spain · Adamo Telecom Iberia S.A.

    Yara SUSP_PowerShell_Caret_Obfuscation_2 From Florian Roth by Florian Roth (Nextron Systems)
    Yara Mimikatz_Memory_Rule_1 From Florian Roth by Florian Roth
    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara Disable_Defender From AbuseCH by iam-py-test
    Yara SUSP_EXPL_POC_VMWare_Workspace_ONE_CVE_2022_22954_Apr22 From Florian Roth by Florian Roth
    Yara WEBSHELL_PHP_Generic From Florian Roth by Arnim Rupp (https://github.com/ruppde)
    Download archived sample
    The password is "infected"

    SHA1: a833405bd15194d8321c9f501de24c86cf57f78b
    SHA256: a05a25c23835a24c49a1c5fc323de7b9443dd7c92ed905e84f9f149c206ab257
    application/x-gzip
    3.46MB
    2023-11-30 05:41:44 +0000 UTC

  • de.freedif.org · nishang_0.7.6+git20210724.414ee11.orig.tar.gz

    /kali/pool/main/n/nishang/

    Singapore · MyRepublic Ltd.

    Yara SUSP_PowerShell_IEX_Download_Combo From Florian Roth by Florian Roth (Nextron Systems)
    Yara PS_AMSI_Bypass From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_PowerShell_Framework_Gen1 From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_Invoke_Mimikatz_Gen From Florian Roth by Florian Roth (Nextron Systems)
    Yara Invoke_mimikittenz From Florian Roth by Florian Roth (Nextron Systems)
    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara HKTL_Nishang_PS1_Invoke_PowerShellTcpOneLine From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: fb389d20d8ba62e40011065fbe822f5074bfb419
    SHA256: ae5a302c8cb8b9d2af50834986cf647f60f17c60be546260b5e1ee6d80d6ec27
    application/x-gzip
    2.25MB
    2022-09-30 17:46:30 +0000 UTC

  • apt-mirror.firehawk-systems.com · nishang_0.7.6+git20210724.414ee11.orig.tar.gz

    /kali.download/kali/pool/main/n/nishang/

    Australia · Aussie Broadband

    Yara SUSP_PowerShell_IEX_Download_Combo From Florian Roth by Florian Roth (Nextron Systems)
    Yara PS_AMSI_Bypass From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_PowerShell_Framework_Gen1 From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_Invoke_Mimikatz_Gen From Florian Roth by Florian Roth (Nextron Systems)
    Yara Invoke_mimikittenz From Florian Roth by Florian Roth (Nextron Systems)
    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara HKTL_Nishang_PS1_Invoke_PowerShellTcpOneLine From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: fb389d20d8ba62e40011065fbe822f5074bfb419
    SHA256: ae5a302c8cb8b9d2af50834986cf647f60f17c60be546260b5e1ee6d80d6ec27
    application/octet-stream
    2.25MB
    2022-09-30 17:46:30 +0000 UTC

  • apt-mirror.firehawk-systems.com · nishang_0.7.6+git20210724.414ee11.orig.tar.gz

    /kali.download/kali/pool/main/n/nishang/

    Australia · Aussie Broadband

    Yara SUSP_PowerShell_IEX_Download_Combo From Florian Roth by Florian Roth (Nextron Systems)
    Yara PS_AMSI_Bypass From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_PowerShell_Framework_Gen1 From Florian Roth by Florian Roth (Nextron Systems)
    Yara Empire_Invoke_Mimikatz_Gen From Florian Roth by Florian Roth (Nextron Systems)
    Yara Invoke_mimikittenz From Florian Roth by Florian Roth (Nextron Systems)
    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Yara HKTL_Nishang_PS1_Invoke_PowerShellTcpOneLine From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: fb389d20d8ba62e40011065fbe822f5074bfb419
    SHA256: ae5a302c8cb8b9d2af50834986cf647f60f17c60be546260b5e1ee6d80d6ec27
    application/octet-stream
    2.25MB
    2022-09-30 17:46:30 +0000 UTC

  • 185.25.60.133 · autoLombApps_1.1.3.exe

    /autoLombard/

    Russia · Optibit LLC

    Yara SUSP_Netsh_PortProxy_Command From Florian Roth by Florian Roth (Nextron Systems)
    Download archived sample
    The password is "infected"

    SHA1: 473c41383ac5331b60955bdd82613e302f960df4
    SHA256: c89c2d6af15f5de2669ac40e6d976fc4911a09d0283b22b5f67f9a35e40a8bb8
    application/octet-stream
    36.19MB
    2023-10-15 16:43:24 +0000 UTC