ComfyUI_Custom_Nodes_AlekPet
Yara Scan Results
Generated on 2024-07-14 08:33:26
Passed Tests
Failed Tests
Issues
FILE PoseNode/lib/fabric.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
crypto_signatures | BASE64_table | $c0 | False | _pusher_ () | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | 64 | 767 | 0 | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 23928 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 23958 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 55220 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 55581 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 56360 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 57216 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 60478 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84589 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84694 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84765 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84774 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84868 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84910 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 86537 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 87846 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 87905 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 88501 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88572 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88872 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88888 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89596 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89686 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89766 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89813 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89908 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89982 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90118 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90257 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90304 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91078 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91099 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91314 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91340 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 91746 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91907 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93320 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93423 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93616 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93694 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93801 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93981 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93993 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94328 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94338 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94445 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 95106 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117163 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117706 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117822 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 121226 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 121618 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 122734 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 123086 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 134918 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 134949 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135014 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135040 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135143 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135186 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135236 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135293 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135333 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135381 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135404 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135546 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135570 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135614 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135626 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135647 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135907 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 136076 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 136113 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136322 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136354 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136388 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136429 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136593 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136635 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136867 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136911 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136943 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137513 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137628 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137650 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137687 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137700 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137781 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137803 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137816 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 138014 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 138268 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 144963 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145056 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145863 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145901 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 162580 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 162671 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 209994 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210212 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210673 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210960 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211409 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211571 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211712 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 211766 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211801 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211942 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212060 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212085 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212360 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212399 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212417 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212448 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212499 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212517 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212557 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212644 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212671 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212775 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212864 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212914 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213240 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213290 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213332 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213364 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213489 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213524 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213549 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 222041 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 223054 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 224610 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 225546 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 227211 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228386 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228554 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228602 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228914 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 229836 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232035 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232305 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232389 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232407 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232451 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232523 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232541 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 233273 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 233531 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238525 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238649 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 238687 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 238844 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238879 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238982 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239021 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239350 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239394 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 242982 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 243432 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 243742 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 248278 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 306360 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 310308 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 310823 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344878 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344908 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344939 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344991 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345010 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345049 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345067 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345116 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345237 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 345276 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 345647 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345730 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345786 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345946 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345980 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 346148 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 346373 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 346882 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 347203 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 347805 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 348026 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 348077 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 353364 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354508 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354717 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354815 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354887 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 361818 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 361865 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56165 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56190 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56275 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56389 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56688 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56174 | 0 | b'onerror' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56201 | 0 | b'onerror' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56284 | 0 | b'onerror' | ||
findcrypt | Big_Numbers3 | $c0 | False | _pusher_ () | b'4595deba885e6b95e012cf1ed9deed8a7b30edf3ae4c7d4bd5cc11d619b75c11' | 64 | 362482 | 0 | b'4595deba885e6b95e012cf1ed9deed8a7b30edf3ae4c7d4bd5cc11d619b75c11' | ||
findcrypt | BASE64_table | $c0 | False | _pusher_ () | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | 64 | 767 | 0 | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' |
FILE PainterNode/lib/fabric.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
crypto_signatures | BASE64_table | $c0 | False | _pusher_ () | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | 64 | 767 | 0 | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 23928 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 23958 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 55220 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 55581 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 56360 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 57216 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 60478 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84589 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84694 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84765 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84774 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84868 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 84910 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 86537 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 87846 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 87905 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 88501 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88572 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88872 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 88888 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89596 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89686 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89766 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89813 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89908 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 89982 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90118 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90257 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 90304 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91078 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91099 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91314 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91340 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 91746 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 91907 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93320 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93423 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93616 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93694 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 93801 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93981 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 93993 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94328 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94338 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 94445 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 95106 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117163 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117706 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 117822 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 121226 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 121618 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 122734 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 123086 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 134918 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 134949 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135014 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135040 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135143 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135186 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135236 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135293 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135333 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135381 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135404 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135546 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135570 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135614 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135626 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 135647 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 135907 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 136076 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 136113 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136322 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136354 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136388 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136429 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136593 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136635 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136867 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136911 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 136943 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137513 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137628 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137650 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137687 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137700 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137781 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137803 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 137816 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 138014 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 138268 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 144963 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145056 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145863 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 145901 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 162580 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 162671 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 209994 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210212 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210673 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 210960 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211409 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211571 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211712 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 211766 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211801 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 211942 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212060 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212085 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212360 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212399 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212417 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212448 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212499 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212517 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212557 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212644 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212671 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 212775 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212864 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 212914 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213240 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213290 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213332 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 213364 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213489 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213524 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 213549 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 222041 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 223054 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 224610 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 225546 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 227211 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228386 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228554 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228602 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 228914 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 229836 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232035 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232305 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232389 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232407 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232451 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232523 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 232541 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 233273 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 233531 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238525 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238649 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 238687 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 238844 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238879 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 238982 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239021 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239350 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 239394 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 242982 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 243432 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 243742 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 248278 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 306360 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 310308 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 310823 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344878 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344908 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344939 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 344991 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345010 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345049 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345067 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345116 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345237 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 345276 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 345647 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345730 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345786 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345946 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 345980 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 346148 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 346373 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 346882 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 347203 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 347805 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 348026 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 348077 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 353364 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354508 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354717 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354815 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 354887 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 361818 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'SVG' | 3 | 361865 | 0 | b'SVG' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56165 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56190 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56275 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56389 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 56688 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56174 | 0 | b'onerror' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56201 | 0 | b'onerror' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 56284 | 0 | b'onerror' | ||
findcrypt | Big_Numbers3 | $c0 | False | _pusher_ () | b'4595deba885e6b95e012cf1ed9deed8a7b30edf3ae4c7d4bd5cc11d619b75c11' | 64 | 362482 | 0 | b'4595deba885e6b95e012cf1ed9deed8a7b30edf3ae4c7d4bd5cc11d619b75c11' | ||
findcrypt | BASE64_table | $c0 | False | _pusher_ () | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | 64 | 767 | 0 | b'ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+/' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33197 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33306 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33558 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33678 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 33834 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34011 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34185 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 34422 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40341 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 40428 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41761 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 41954 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 45485 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 47381 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166793 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 166996 | 0 | b'identifier' |
FILE PainterNode/lib/manager_mypaint.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 5653 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 5562 | 0 | b'onerror' |
FILE PainterNode/assets/json/brushes_data.json
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|
FILE PainterNode/painter_node_example.jpg
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
findcrypt | Big_Numbers1 | $c0 | False | _pusher_ () | b'00000000000000000000000000000001' | 32 | 14315 | 0 | b'00000000000000000000000000000001' |
FILE PainterNode/js/painter_node.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 354 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 921 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 932 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 1072 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 1647 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 31302 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 76823 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 76878 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 76936 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 43457 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 58430 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 67507 | 0 | b'onload' |
FILE DeepTranslatorNode/deep_translator_node.py
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
findcrypt | Big_Numbers1 | $c0 | False | _pusher_ () | b'c8af063b6c350215bc74340e16eebf51' | 32 | 1103 | 0 | b'c8af063b6c350215bc74340e16eebf51' | ||
findcrypt | Big_Numbers1 | $c0 | False | _pusher_ () | b'26838885af95f01110f154dac9d6a235' | 32 | 1161 | 0 | b'26838885af95f01110f154dac9d6a235' |
FILE DeepTranslatorNode/config.json
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
findcrypt | Big_Numbers1 | $c0 | False | _pusher_ () | b'c8af063b6c350215bc74340e16eebf51' | 32 | 907 | 0 | b'c8af063b6c350215bc74340e16eebf51' | ||
findcrypt | Big_Numbers1 | $c0 | False | _pusher_ () | b'26838885af95f01110f154dac9d6a235' | 32 | 2566 | 0 | b'26838885af95f01110f154dac9d6a235' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-emmet.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 730 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1352 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1422 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 3408 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5111 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5375 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5489 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 6991 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10421 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10605 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11471 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11633 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14912 | 0 | b'replace(' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-options.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-crimson_editor.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 611 | 0 | b'identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-gruvbox_dark_hard.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 111 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 205 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 292 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 389 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 450 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 537 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 667 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 760 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 895 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 984 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1068 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1165 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1279 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1341 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1416 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1497 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1560 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1635 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1723 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1796 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1871 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1946 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2040 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2112 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2183 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2245 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2337 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2398 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2470 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2555 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2618 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2694 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2771 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2838 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2928 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3011 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3089 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3162 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3232 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3466 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3526 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3608 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3642 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3804 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 111 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 205 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 292 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 389 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 450 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 537 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 667 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 760 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 895 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 984 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1068 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1165 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1279 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1341 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1416 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1497 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1560 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1635 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1723 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1796 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1871 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1946 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2040 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2112 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2183 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2245 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2337 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2398 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2470 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2555 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2618 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2694 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2771 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2838 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2928 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3011 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3089 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3162 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3232 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3466 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3526 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3608 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3642 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3804 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 111 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 205 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 292 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 389 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 450 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 537 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 667 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 760 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 895 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 984 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1068 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1165 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1279 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1341 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1416 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1497 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1560 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1635 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1723 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1796 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1871 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1946 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2040 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2112 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2183 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2245 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2337 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2398 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2470 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2555 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2618 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2694 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2771 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2838 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2928 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3011 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3089 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3162 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3232 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3466 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3526 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3608 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3642 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3804 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 111 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 205 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 292 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 389 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 450 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 537 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 667 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 760 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 895 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 984 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1068 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1165 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1279 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1341 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1416 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1497 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1560 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1635 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1723 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1796 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1871 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1946 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2040 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2112 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2183 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2245 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2337 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2398 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2470 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2555 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2618 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2694 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2771 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2838 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2928 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3011 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3089 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3162 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3232 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3466 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3526 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3608 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3642 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3804 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-language_tools.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 730 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1352 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1422 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 3408 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5111 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5375 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5489 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 6991 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10421 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10605 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11471 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11633 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14912 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 52297 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 52365 | 0 | b'replace(' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-error_marker.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-prompt.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 9911 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10533 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10603 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 12589 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14292 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14556 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14670 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 16172 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 19602 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 19786 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 20652 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 20814 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 24093 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 53898 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 58269 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 61898 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 62643 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 62932 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 62983 | 0 | b'replace(' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/mode-javascript.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 5844 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 6076 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 12860 | 0 | b'identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-settings_menu.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8000 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 8010 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-themelist.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 563 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 573 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 563 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 573 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 563 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 573 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 563 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 573 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-gruvbox.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 101 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 176 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 246 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 301 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 395 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 493 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 546 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 622 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 673 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 727 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 794 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 848 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 915 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 981 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1033 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1086 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1152 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1205 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1271 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1340 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1420 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1531 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1609 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1809 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2033 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2083 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2155 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2179 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2334 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 101 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 176 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 246 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 301 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 395 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 493 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 546 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 622 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 673 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 727 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 794 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 848 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 915 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 981 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1033 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1086 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1152 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1205 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1271 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1340 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1420 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1531 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1609 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1809 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2033 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2083 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2155 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2179 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2334 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 101 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 176 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 246 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 301 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 395 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 493 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 546 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 622 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 673 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 727 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 794 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 848 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 915 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 981 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1033 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1086 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1152 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1205 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1271 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1340 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1420 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1531 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1609 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1809 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2033 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2083 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2155 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2179 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2334 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 101 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 176 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 246 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 301 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 395 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 493 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 546 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 622 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 673 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 727 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 794 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 848 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 915 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 981 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1033 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1086 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1152 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1205 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1271 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1340 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1420 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1531 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1609 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1809 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2033 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2083 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2155 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2179 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2334 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ext-inline_autocomplete.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 730 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1352 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 1422 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 3408 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5111 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5375 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 5489 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 6991 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10421 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 10605 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11471 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 11633 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 14912 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 64691 | 0 | b'replace(' | ||
powershell_obfuscation | OBFUS_PowerShell_Common_Replace | $replace | False | SECUINFRA Falcon Team () | b'replace(' | 8 | 64759 | 0 | b'replace(' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31201 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31352 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31602 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 31623 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31693 | 0 | b'Identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'Identifier' | 10 | 31770 | 0 | b'Identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/mode-python.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 1176 | 0 | b'identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-ambiance.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 2538 | 0 | b'identifier' |
FILE IDENode/lib/ace-builds/src-min-noconflict/ace.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 64629 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 64654 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 300214 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 309032 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 309064 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 309106 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 309131 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 311569 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 354038 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 354225 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 357081 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 357138 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 357583 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 357642 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 358126 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 358182 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 358727 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 358789 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 360550 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 360614 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 369099 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'svg' | 3 | 369367 | 0 | b'svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 410974 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $svg | False | delivr.to () | b'Svg' | 3 | 411028 | 0 | b'Svg' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 11702 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onload | False | delivr.to () | b'onload' | 6 | 11818 | 0 | b'onload' | ||
svg_onload_onerror | SUSP_SVG_Onload_Onerror_Jul23 | $onerror | False | delivr.to () | b'onerror' | 7 | 415348 | 0 | b'onerror' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-gruvbox_light_hard.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 112 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 207 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 295 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 390 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 452 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 540 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 671 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 765 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 898 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 988 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1073 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1171 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1283 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1346 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1422 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1504 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1568 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1644 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1733 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1807 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1883 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1959 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2054 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2127 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2199 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2262 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2355 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2417 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2490 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2576 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2640 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2717 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2795 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2863 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2954 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3038 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3117 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3191 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3262 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3479 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3813 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3874 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3957 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3992 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 4155 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 112 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 207 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 295 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 390 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 452 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 540 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 671 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 765 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 898 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 988 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1073 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1171 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1283 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1346 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1422 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1504 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1568 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1644 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1733 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1807 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1883 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1959 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2054 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2127 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2199 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2262 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2355 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2417 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2490 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2576 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2640 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2717 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2795 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2863 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2954 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3038 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3117 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3191 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3262 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3479 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3813 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3874 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3957 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3992 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 4155 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 112 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 207 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 295 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 390 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 452 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 540 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 671 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 765 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 898 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 988 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1073 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1171 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1283 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1346 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1422 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1504 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1568 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1644 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1733 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1807 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1883 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 1959 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2054 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2127 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2199 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2262 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2355 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2417 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2490 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2576 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2640 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2717 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2795 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2863 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 2954 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3038 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3117 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3191 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3262 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3479 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3813 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3874 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3957 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 3992 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 4155 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 25 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 112 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 207 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 295 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 390 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 452 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 540 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 671 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 765 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 898 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 988 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1073 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1171 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1283 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1346 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1422 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1504 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1568 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1644 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1733 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1807 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1883 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 1959 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2054 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2127 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2199 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2262 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2355 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2417 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2490 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2576 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2640 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2717 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2795 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2863 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 2954 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3038 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3117 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3191 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3262 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3479 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3813 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3874 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3957 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 3992 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 4155 | 0 | b'vbox' |
FILE IDENode/lib/ace-builds/src-min-noconflict/theme-sqlserver.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' | ||
Detect_Sandbox_Unprotect | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' | ||
anti_sandboxing | Qemu_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' | ||
anti_sandboxing | VBox_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' | ||
anti_sandboxing | VMWare_Detection | $dev2 | False | () | b'identifier' | 10 | 375 | 0 | b'identifier' |
FILE IDENode/js/ide_node.js
Test Name | Test Description | Match Rule | Match String | Is XOR | Author | Test Creation Date | Matched data | Length | Offset | XOR key | Plaintext |
---|---|---|---|---|---|---|---|---|---|---|---|
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 777 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 790 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 813 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 777 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 790 | 0 | b'vbox' | ||
Detect_Sandbox_Unprotect | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 813 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 777 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 790 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $data1 | False | () | b'vbox' | 4 | 813 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 777 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 790 | 0 | b'vbox' | ||
anti_sandboxing | VBox_Detection | $dev3 | False | () | b'vbox' | 4 | 813 | 0 | b'vbox' |