| Name / Title | Added | Expires | Hits | Comments | Syntax | |
|---|---|---|---|---|---|---|
| Candidates | Apr 23rd, 2023 | Never | 1 | 0 | None | - |
| Properties | Feb 7th, 2023 | Never | 10 | 0 | None | - |
| Mal Italian Macro | Dec 9th, 2021 | Never | 663 | 0 | None | - |
| Abuse MalwareBazaar - Dridex - Payload URLs | Nov 24th, 2021 | Never | 1,192 | 0 | None | - |
| Abuse MalwareBazaar - Dridex - URLs | Nov 24th, 2021 | Never | 990 | 0 | None | - |
| paypal phishing email | Feb 7th, 2021 | Never | 639 | 0 | None | - |
| interesting mal XLM | Jan 28th, 2021 | Never | 1,669 | 0 | None | - |
| zloader deobfuscated macro | Jan 26th, 2021 | Never | 633 | 0 | None | - |
| Mal XLM Macro | Jan 22nd, 2021 | Never | 812 | 0 | None | - |
| Extracted XLM Macro in Italian | Jan 19th, 2021 | Never | 727 | 0 | None | - |
| top zone file | Dec 23rd, 2020 | Never | 536 | 0 | None | - |
| PhishCanary - Output | Dec 23rd, 2020 | Never | 1,760 | 0 | None | - |
| Homoglyphs for Brand Names | Dec 22nd, 2020 | Never | 1,137 | 0 | None | - |
| XLM Malware | Dec 16th, 2020 | Never | 835 | 0 | None | - |
| Malware - XLM | Dec 11th, 2020 | Never | 560 | 0 | None | - |
| XLSB sample - XLMDeobfuscator output | Nov 29th, 2020 | Never | 507 | 0 | None | - |
| XLSB - Result | Oct 18th, 2020 | Never | 887 | 0 | None | - |
| Error - Olevba | Oct 5th, 2020 | Never | 594 | 0 | None | - |
| Sample - XLM - Bug Fixing | Aug 16th, 2020 | Never | 509 | 0 | None | - |
| Zloader (7dd5eabb0946fd1d11a77ad82143afe2) deobfuscated XLM | Jun 22nd, 2020 | Never | 710 | 0 | None | - |
| xlmdeobfuscator - zloader - json - dump files | Jun 21st, 2020 | Never | 1,418 | 0 | None | - |
| Zloader - new 2 | Jun 21st, 2020 | Never | 519 | 0 | None | - |
| ZLOADER - new | Jun 21st, 2020 | Never | 1,320 | 0 | None | - |
| example - michael | Jun 6th, 2020 | Never | 709 | 0 | None | - |
| ExcelNtDonut - Deobfuscation | May 27th, 2020 | Never | 1,598 | 0 | None | - |
| example - deobfuscated | May 26th, 2020 | Never | 539 | 0 | None | - |
| example - obfuscated | May 26th, 2020 | Never | 545 | 0 | None | - |
| Deobfuscate XLS by automatically guessing the DAY(NOW()) | May 26th, 2020 | Never | 491 | 0 | None | - |
| 323455169b75e4a753eb5ad34290243ede09f9d559545aac6e6a71c2719b | May 26th, 2020 | Never | 486 | 0 | None | - |
| Macro - loop2 | May 25th, 2020 | Never | 519 | 0 | None | - |
| Macro - loop | May 25th, 2020 | Never | 473 | 0 | None | - |
| sample - macro | May 24th, 2020 | Never | 477 | 0 | None | - |
| extracted macro | May 23rd, 2020 | Never | 836 | 0 | None | - |
| Work in progress | May 22nd, 2020 | Never | 563 | 0 | None | - |
| Extracted Macro | May 22nd, 2020 | Never | 643 | 0 | None | - |
| Extracted Macro | May 22nd, 2020 | Never | 508 | 0 | None | - |
| Binary - PTGS | May 20th, 2020 | Never | 487 | 0 | None | - |
| XLMMacroDeobfuscator - JSON output | May 20th, 2020 | Never | 2,926 | 0 | None | - |
| ZLOADER XLM Macro - deobfuscated | May 20th, 2020 | Never | 751 | 0 | None | - |
| Deobfuscation of ZLOADER XLM macro | May 20th, 2020 | Never | 686 | 0 | None | - |
| Deobfuscation of ZLOADER XLM - MID | May 20th, 2020 | Never | 507 | 0 | None | - |
| XLM deobfuscation - MID function | May 20th, 2020 | Never | 895 | 0 | None | - |
| GOZI - XLSM macro | May 19th, 2020 | Never | 708 | 0 | None | - |
| Zloader - a12b2ef9fe9c7be93533235d83af9b076446b0fb25e3fe16e0 | May 16th, 2020 | Never | 937 | 0 | None | - |
| Zloader - 8a6e4c10c30b773147d0d7c8307d88f1cf242cb01a9747bfec | May 16th, 2020 | Never | 1,047 | 0 | None | - |
| Zloader - Invoice-4063.xls | May 16th, 2020 | Never | 449 | 0 | None | - |
| Zloader - Deobfuscated Macro | May 16th, 2020 | Never | 473 | 0 | None | - |
| XLMMacroDeobfuscator output | May 4th, 2020 | Never | 755 | 0 | None | - |
| Yara rule - xlsb_with_xlm_macro | Apr 23rd, 2020 | Never | 1,068 | 0 | None | - |
| XLMMacroDeobfuscator output | Apr 16th, 2020 | Never | 550 | 0 | None | - |
| OLVBA - XLSM + XLM macro | Apr 15th, 2020 | Never | 555 | 0 | None | - |
| Yara rule - xlsm_with_xlm_macro | Apr 15th, 2020 | Never | 1,329 | 0 | None | - |
| Macro - Sample Parse Tree | Apr 9th, 2020 | Never | 710 | 0 | None | - |
| Zloader - Deobfuscated Macro | Apr 8th, 2020 | Never | 1,185 | 0 | None | - |
| Yara rule - macro_sheet_zloader | Apr 7th, 2020 | Never | 2,124 | 0 | None | - |
| NPP - tip1 - text | Mar 28th, 2020 | Never | 743 | 0 | None | - |
| Potentially Malicious LUA Script | Dec 18th, 2019 | Never | 722 | 0 | Lua | - |
| Extracted Shellcode | Oct 27th, 2019 | Never | 728 | 0 | None | - |
| Sample Internet Shortcut | Sep 26th, 2019 | Never | 653 | 0 | None | - |
| Mal JavaScript | Sep 8th, 2019 | Never | 914 | 0 | JavaScript | - |
| Malicious PowerShell (Excerpt) | Aug 2nd, 2019 | Never | 912 | 0 | PowerShell | - |
| Malicious PowerShell | Aug 2nd, 2019 | Never | 1,278 | 0 | PowerShell | - |
| Malicious HTA | Jun 28th, 2019 | Never | 1,988 | 0 | JavaScript | - |
| Mal Powershell cmd | Jun 16th, 2019 | Never | 913 | 0 | Batch | - |
| Malicious PowerShell | May 1st, 2019 | Never | 1,384 | 0 | PowerShell | - |
| Malicious HTA (multi-stage) | Apr 12th, 2019 | Never | 977 | 0 | HTML | - |
| Mal Powershell | Mar 7th, 2019 | Never | 1,788 | 0 | PowerShell | - |
| Mal PowerShell Code extracted from Image | Mar 7th, 2019 | Never | 928 | 0 | PowerShell | - |
| Mal Powershell - Stage 9 | Mar 7th, 2019 | Never | 814 | 0 | PowerShell | - |
| Mal Powershel - After unwrapping 8-layer obfuscation | Mar 7th, 2019 | Never | 979 | 0 | PowerShell | - |
| Variable N | Mar 3rd, 2019 | Never | 566 | 0 | Batch | - |
| Malicious VBA | Mar 3rd, 2019 | Never | 702 | 0 | VBScript | - |
| Malicious PowerShell | Mar 3rd, 2019 | Never | 1,166 | 0 | PowerShell | - |
| Mal PowerShell after 36 round decoding | Mar 3rd, 2019 | Never | 719 | 0 | PowerShell | - |
| Decoded Malicious PowerShell (Stage 5) | Mar 3rd, 2019 | Never | 1,083 | 0 | PowerShell | - |
| Obfuscated Malicious PowerShell (Stage 4) | Mar 3rd, 2019 | Never | 691 | 0 | PowerShell | - |
| Decoded Malicious PowerShell | Mar 3rd, 2019 | Never | 923 | 0 | PowerShell | - |
| Emotet - VBA | Feb 28th, 2019 | Never | 1,063 | 0 | VBScript | - |
| Mal PDF | Feb 28th, 2019 | Never | 4,316 | 0 | PostScript | - |
| Emotet latest Docs | Jan 25th, 2019 | Never | 1,110 | 0 | None | - |
| Obfuscated Malicious PowerShell | Jan 7th, 2019 | Never | 2,664 | 0 | PowerShell | - |
| Malicious Javascript | Dec 25th, 2018 | Never | 753 | 0 | JavaScript | - |
| Malicious Powershell | Dec 18th, 2018 | Never | 1,349 | 0 | PowerShell | - |
| Malicious VBScript | Dec 10th, 2018 | Never | 917 | 0 | VBScript | - |
| Obfuscated malicious bat | Dec 7th, 2018 | Never | 680 | 0 | Batch | - |
| Decoding Encoded base64 string using MSIL | Nov 21st, 2018 | Never | 939 | 0 | PowerShell | - |
| Mal Batch file | Nov 20th, 2018 | Never | 928 | 0 | Batch | - |
| Malicious Bash Script | Nov 5th, 2018 | Never | 654 | 0 | Bash | - |