diff --git a/yara/sha256.md b/yara/sha256.md index e845817..cf3269e 100644 --- a/yara/sha256.md +++ b/yara/sha256.md @@ -1,35 +1,32 @@ -volt typhooon sha256 - -f4dd44bc19c19056794d29151a5b1bb76afd502388622e24c863a8494af147dd -ef09b8ff86c276e9b475a6ae6b54f08ed77e09e169f7fc0872eb1d427ee27d31 -d6ebde42457fe4b2a927ce53fc36f465f0000da931cfab9b79a36083e914ceca -472ccfb865c81704562ea95870f60c08ef00bcd2ca1d7f09352398c05be5d05d -66a19f7d2547a8a85cee7a62d0b6114fd31afdee090bd43f36b89470238393d7 -3c2fe308c0a563e06263bbacf793bbe9b2259d795fcc36b953793a7e499e7f71 -41e5181b9553bbe33d91ee204fe1d2ca321ac123f9147bb475c0ed32f9488597 -c7fee7a3ffaf0732f42d89c4399cbff219459ae04a81fc6eff7050d53bd69b99 -3a9d8bb85fbcfe92bae79d5ab18e4bca9eaf36cea70086e8d1ab85336c83945f -fe95a382b4f879830e2666473d662a24b34fccf34b6b3505ee1b62b32adafa15 -ee8df354503a56c62719656fae71b3502acf9f87951c55ffd955feec90a11484 -baeffeb5fdef2f42a752c65c2d2a52e84fb57efc906d981f89dd518c314e231c -b4f7c5e3f14fb57be8b5f020377b993618b6e3532a4e1eb1eae9976d4130cc74 -4b0c4170601d6e922cf23b1caf096bba2fade3dfcf92f0ab895a5f0b9a310349 -c0fc29a52ec3202f71f6378d9f7f9a8a3a10eb19acb8765152d758aded98c76d -d6ab36cb58c6c8c3527e788fc9239d8dcc97468b6999cf9ccd8a815c8b4a80af -9dd101caee49c692e5df193b236f8d52a07a2030eed9bd858ed3aaccb406401a -450437d49a7e5530c6fb04df2e56c3ab1553ada3712fab02bd1eeb1f1adbc267 -93ce3b6d2a18829c0212542751b309dacbdc8c1d950611efe2319aa715f3a066 -7939f67375e6b14dfa45ec70356e91823d12f28bbd84278992b99e0d2c12ace5 -389a497f27e1dd7484325e8e02bbdf656d53d5cf2601514e9b8d8974befddf61 -c4b185dbca490a7f93bc96eefb9a597684fdf532d5a04aa4d9b4d4b1552c283b -e453e6efc5a002709057d8648dbe9998a49b9a12291dee390bb61c98a58b6e95 -6036390a2c81301a23c9452288e39cb34e577483d121711b6ba6230b29a3c9ff -cd69e8a25a07318b153e01bba74a1ae60f8fc28eb3d56078f448461400baa984 -17506c2246551d401c43726bdaec800f8d41595d01311cf38a19140ad32da2f4 -8fa3e8fdbaa6ab5a9c44720de4514f19182adc0c9c6001c19cf159b79c0ae9c2 -d17317e1d5716b09cee904b8463a203dc6900d78ee2053276cc948e4f41c8295 -472ccfb865c81704562ea95870f60c08ef00bcd2ca1d7f09352398c05be5d05d -3e9fc13fab3f8d8120bd01604ee50ff65a40121955a4150a6d2c007d34807642 -ee8df354503a56c62719656fae71b3502acf9f87951c55ffd955feec90a11484 SHA256 hash Java web shell (AuditReport.jspx) used by BRONZE SILHOUETTE -fe95a382b4f879830e2666473d662a24b34fccf34b6b3505ee1b62b32adafa15 SHA256 hash Base64-encoded web shell (ntuser.ini) used by BRONZE SILHOUETTE -3a9d8bb85fbcfe92bae79d5ab18e4bca9eaf36cea70086e8d1ab85336c83945f SHA256 hash Web shell (iisstart.aspx) used by BRONZE SILHOUETTE \ No newline at end of file +``` +f4dd44bc19c19056794d29151a5b1bb76afd502388622e24c863a8494af147dd,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +ef09b8ff86c276e9b475a6ae6b54f08ed77e09e169f7fc0872eb1d427ee27d31,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +d6ebde42457fe4b2a927ce53fc36f465f0000da931cfab9b79a36083e914ceca,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +472ccfb865c81704562ea95870f60c08ef00bcd2ca1d7f09352398c05be5d05d,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +66a19f7d2547a8a85cee7a62d0b6114fd31afdee090bd43f36b89470238393d7,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +3c2fe308c0a563e06263bbacf793bbe9b2259d795fcc36b953793a7e499e7f71,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +41e5181b9553bbe33d91ee204fe1d2ca321ac123f9147bb475c0ed32f9488597,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +c7fee7a3ffaf0732f42d89c4399cbff219459ae04a81fc6eff7050d53bd69b99,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +3a9d8bb85fbcfe92bae79d5ab18e4bca9eaf36cea70086e8d1ab85336c83945f,sha256,"Web shell (iisstart.aspx)",volt typhoon,C2,,,,,,,, +fe95a382b4f879830e2666473d662a24b34fccf34b6b3505ee1b62b32adafa15,sha256,"Base64-encoded web shell (ntuser.ini)",volt typhoon,C2,,,,,,,, +ee8df354503a56c62719656fae71b3502acf9f87951c55ffd955feec90a11484,sha256,"Java web shell (AuditReport.jspx)",volt typhoon,C2,,,,,,,, +baeffeb5fdef2f42a752c65c2d2a52e84fb57efc906d981f89dd518c314e231c,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +b4f7c5e3f14fb57be8b5f020377b993618b6e3532a4e1eb1eae9976d4130cc74,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +4b0c4170601d6e922cf23b1caf096bba2fade3dfcf92f0ab895a5f0b9a310349,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +c0fc29a52ec3202f71f6378d9f7f9a8a3a10eb19acb8765152d758aded98c76d,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +d6ab36cb58c6c8c3527e788fc9239d8dcc97468b6999cf9ccd8a815c8b4a80af,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +9dd101caee49c692e5df193b236f8d52a07a2030eed9bd858ed3aaccb406401a,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +450437d49a7e5530c6fb04df2e56c3ab1553ada3712fab02bd1eeb1f1adbc267,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +93ce3b6d2a18829c0212542751b309dacbdc8c1d950611efe2319aa715f3a066,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +7939f67375e6b14dfa45ec70356e91823d12f28bbd84278992b99e0d2c12ace5,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +389a497f27e1dd7484325e8e02bbdf656d53d5cf2601514e9b8d8974befddf61,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +c4b185dbca490a7f93bc96eefb9a597684fdf532d5a04aa4d9b4d4b1552c283b,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +e453e6efc5a002709057d8648dbe9998a49b9a12291dee390bb61c98a58b6e95,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +6036390a2c81301a23c9452288e39cb34e577483d121711b6ba6230b29a3c9ff,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +cd69e8a25a07318b153e01bba74a1ae60f8fc28eb3d56078f448461400baa984,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +17506c2246551d401c43726bdaec800f8d41595d01311cf38a19140ad32da2f4,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +8fa3e8fdbaa6ab5a9c44720de4514f19182adc0c9c6001c19cf159b79c0ae9c2,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +d17317e1d5716b09cee904b8463a203dc6900d78ee2053276cc948e4f41c8295,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +472ccfb865c81704562ea95870f60c08ef00bcd2ca1d7f09352398c05be5d05d,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +3e9fc13fab3f8d8120bd01604ee50ff65a40121955a4150a6d2c007d34807642,sha256,ChinaChopper,volt typhoon,C2,,,,,,,, +``` \ No newline at end of file