SUSP_Base64_Encoded_Ipinfo_io_Jun21_1

Rule Info

Description
Detects suspicious base64 encoded ipinfo.io string
Tags
['SUSP', 'T1132']
Date
2021-06-25
Required Modules
[]
Rule Hash
004b960d3ae8a376446de43c9d28b5ad
Score
65
Av Ratio
12.87
Name
SUSP_Base64_Encoded_Ipinfo_io_Jun21_1
Author
Florian Roth
Minimum Yara
1.7

Antivirus Verdicts

Rating
Number of Samples
Malicious (>= 10 engines)
21
Suspicious (< 10 engines)
39
Clean (0 engines)
14

Rule Matches

Total
Timestamp
Hash
Positives
VT
59
2022-05-25 19:13:23
87c4d966329576b83da41514180d3d638f523d1f70756fe3ccc36717cdeb7b14
5
57
2022-05-25 18:31:33
400709b5a2c31b4e1860d6d3cd3ca78417094b9c428d12a04de3eaa84d68d27f
3
59
2022-05-25 11:46:23
04debc2dac7e5a120eb7978586727f3ec4e7108cb318f90b24d32aac59f0a970
6
59
2022-05-25 07:44:47
5bb3842e584c6136528cf1ec0f7b73e6f61a44f4d1bb4d89335c8d1ca236dd37
5
59
2022-05-23 22:43:54
af2f794adc6060e8c10fa32366d8be97bd3e4dd0a958978cb2315d035124f13e
5
59
2022-05-23 19:08:38
44d773c3059540dad9366e55f10019c12793f4ff8566d4818ffcade8baf4aac3
6
57
2022-05-21 20:06:08
ee60aa7de10bef528f8539f3edec6c02e93a12ad2b9268e68936595b2d728b9a
2
60
2022-05-16 15:20:29
9a6dbb0b3c586b79ebdcb3dfca0e93b196ec4459819ac739cfa5691d0faa75b6
14
58
2022-05-13 16:39:11
932eda2722266cde50d5d2baa75588b4bf56640aaefd2de02394bf9a9dc556ba
4
58
2022-05-13 16:26:49
e506cec8bf40f296a8637e12bb4d4ecb178897f5eb9cb7bb420bf8f52dd307f8
6
59
2022-05-12 23:39:39
b52484d6d802a50620feda7d6ec61111fab1605dcfc5ea2957b23d6f24e3f983
4
59
2022-05-12 20:22:34
d5a7fb1340a877dc9cc07b9a024a420150b286fc08b2387612ba7921139b1dc3
4
58
2022-05-11 21:50:27
c08e7cdbb04dc49f109047389793b432bc75e9478b67ca2b3d8ad1a8abb7dfc3
4
59
2022-05-09 10:20:17
c369339bdea2e7391104c7d9ca51da22ac67aaad9a2b5da17722a7936698cd16
5
59
2022-05-06 18:21:45
232adfd0640d5d2a5ea5509ff0f0d336cf29346333a240012a3b0b791351a522
2
58
2022-05-06 10:05:06
8996761bc7f1b1b81f400224647b4279058a8d4ea6e8d30ef4064198738aca80
2
57
2022-05-05 21:12:30
eaa32637d33362b911a99119271b69e8afafe5c10139f9f1112eb1df473eabd2
1
59
2022-05-04 16:40:59
20eb84bc76f6da4eff41a66dfcc0b4c5372233d1568f73d701b9f9f8e8c98da1
2
59
2022-05-04 16:07:41
256661db37be44822d5c901d54131f4379da5efe81e6a158bc709ffdb4f541b1
2
58
2022-05-04 14:27:21
2f70fd4931b611c172ba79fde66701137544eaab1581242385e1150b905d9d1b
2
58
2022-05-03 15:04:49
d155c3d6ae690a12c47b04a6ca0afb4d9184ef03c965ea69175436a293c30fb4
0
58
2022-05-03 14:22:55
7a8e8b013be773d560f783229b730e9156a7fa7279078b32297124f859c6887c
0
59
2022-05-03 10:39:39
4cce329dc199d7acdb9d27e66c93ed60fcc805a7d247a0da9c59c8261dc785a7
2
58
2022-05-02 16:30:58
9181e3ecde1ea8f60d4eb0c16f760c51a3f099766bcca1eb9ad19136894a5ada
2
59
2022-05-02 15:44:40
b0c24686e874421bea12f76a0fc3bd139e8b3bcf41fa55402e57eb28282e15ce
2
59
2022-04-28 15:10:21
5b57108851c145a482bfbaca471af4fcac5934afd77fe767e71237a4add2014a
5
58
2022-04-28 02:57:20
893ce8ba10a2c734921c1fe49219972fbb032dbcf7fb49d443031c639a4b21c4
3
57
2022-04-27 12:15:45
c147fa35f27b5d119fc8a70f9cbd91a35e664124438749545430f8709f5b9f1d
4
58
2022-04-26 19:14:58
556f1a393a88c1debebb2e537c3d4cf388cf236fa47b8abfabf531b4d55ec5f1
3
57
2022-04-26 18:24:52
94a3555c14771a4b3a7078f878e7530e04dcc846570b30f29aeb67c6733065d6
3
58
2022-04-26 13:49:40
fa91996407e821400f962f248c576cacc2163f61fa12b1f21d4ad6fede3a010e
3
58
2022-04-16 20:30:56
5150319fead3a94e59b565d0daaf98f106681445a20a8d09c8850690917ec079
0
57
2022-04-01 21:06:51
8e539ca21c4818ddb41b85b9a908b41b2e68922ae6e6b3f891cc69d55aa12a01
0
68
2022-03-26 14:51:36
0e360db8783294000af09d37ffaae21974b700e8ef203013f43348ece75240a7
35
55
2022-03-09 22:19:19
6b9e1bd34bd1d68d67abf6a3af9c357dcb6393f8ac6a1db9fa2c85093db2247a
0
57
2022-02-16 19:56:54
2ff53549a21ff1158cafdb744a31885b4a350028f885e51051be35caec1d4507
20
58
2022-02-12 07:37:30
80f943ccb816f845b7e8db12c58a7c633b65950739185569d847a7787a3e32ae
2
58
2022-02-11 10:08:48
d657d98053a13b03ff1be336fb3937f31829a2a8c88bc0e517579c8b6875b094
3
65
2022-01-26 20:49:38
089bdc109872a72c444bbc17e1c2e45b22adc89623a358487ab788cafe3a3429
2
57
2022-01-16 01:15:51
5919190d6b10847714fd2c89c279588fbe737094c89d4a216f695f8bab32e438
0
59
2022-01-05 02:14:35
1362d8f34a54fd480b3ba10b98711d459751fb78211c9624bf5abce87321ab59
18
60
2022-01-04 11:36:47
f7921c6b24ab9ac840dbb414a98a0800859ab8d1e5737d551a7939e177c4e2a6
29
57
2022-01-02 10:40:51
5f2ee041b81b205c8b8a6b5d6f8eb296b1903fa5fdfa4490c0afd7edbde2d4c8
15
58
2021-12-30 06:37:16
b72ad55751d602d773378c212256de29db3c39c6a45380fc4e0e2c834172fb54
0
67
2021-12-29 20:27:16
faf4e8336f8511a2495b8c807a985bc28004630913b3feab9064e8773647ba30
16
68
2021-12-29 20:24:36
0e1c763b3bf4e09848e3f137614da8186e60e9a8c8691c20b0129ff1e9100e10
17
66
2021-12-29 17:08:03
3f9f4ea726b470c33522bfd9444aed5c6621972aa566a369f960ee801a7ae712
11
66
2021-12-18 05:43:18
9c671ba33ef3791691ae6af061f376fb0355dafeed5207e8692ae42bf29d9a73
18
67
2021-12-18 05:41:09
6af9f582665d48586b300a4d10c33d5e5e16ecf08b612d8581e80f78ce2f3756
17
67
2021-12-16 21:40:19
ddc2d20b8379679f439e3da6006674b231e307b1cfa612ee4ca66d5b2065bdfe
29
55
2021-12-02 01:25:01
6eed4e65f93896783005474479291cfc6c538ec91ff879239be3b53119dfd772
6
56
2021-11-30 00:15:37
624349d229fda100119f166404407991a6fc1493968824b363b1da42a7478a8c
2
66
2021-11-26 16:21:30
fca71af02adc8e721a04b374db222d17154846a6325473ec9fc27de24dcfbb85
15
57
2021-11-25 15:17:13
2f6e82186aa6d48ce8179ae5dbf8d70665289baab0e8b0a1b7d26ea0f91669c4
15
56
2021-11-24 00:01:54
bef5bc4f7cea7ba845e332415ab2588f153695264a15438094348990b1f4bc20
0
59
2021-11-22 18:42:12
cd4f075e4332cfb64d12ce02b52ff14d073f8c0d88b2f81cef0beba4b084e22a
30
57
2021-11-19 10:22:09
e648d3cdcfafc34f19815c0fe3e2a5b253a77331e0c42e9103208ed105b7d9af
5
58
2021-11-19 10:22:04
44734c5f9dfe1b7cb4d66d7b262848146faf59de4d3e3545799214104fa996d7
5
56
2021-11-15 22:08:01
049d31038be108c3a6e1d934232297974a080c2c78405be9eb581e1fa96d0737
3
56
2021-11-12 09:48:04
47f0112bcda4dd173fd70f55d918c70150abe1a6567b7328baf8b34508fe8654
2
55
2021-11-11 15:23:46
e182dfe957181f488aaba50c1f09fe6176ba00b8c251a82c6e99999945d3ff83
0
64
2021-10-29 11:14:12
29b4e746188cd0f1da21a350db907671446deb1fe716e5fc4a979ac80bfc0326
27
69
2021-10-04 16:22:51
2c962f7f5c4f2510339ff508e8b894d09771cb8b04a3cdcaab45b418e57c67d9
41
58
2021-09-09 20:11:07
f58bedad5a55f725a8b1e8f630494af1552c60a4fa3d14ad419d29e5b279d706
0
57
2021-09-04 15:07:46
97e56ae223df0df53fa4adfd9de8236fdcf342fc61cade17a4b8b9668a6ba66c
12
58
2021-09-01 13:23:13
7d0fe7c1b6d4179e6969a55b878fb63c857b31fdc6f6f627e65566d57aeb32f7
0
58
2021-08-27 08:40:00
7fd2d827ccf98f34339dbd1e12557151c104dc3d3a160e451d453a6d48236be4
0
58
2021-08-09 08:38:11
4709c4b7511d62500fd846b6b1f78e448d216f4dc65915254c2b9fb049304c91
0
69
2021-07-24 06:50:24
3cad59c65ee1e261658c2489dc45a7c6875d8ccb917d291d282e48bca1b74752
41
58
2021-07-20 01:06:55
399360e61755a9441ac5cb4e2ed2f96296364c53730aa61c92d6fb8cbc2baf4f
0
58
2021-07-17 23:47:07
523496517bd82fe2f0ef384784b6f5e038ed19e46b27572e80e51181b6ab883d
1
57
2021-07-17 23:40:51
5614e89e4108d9e52fceb45b4e84b09da00ac9211d290d2e10340109b1a08736
1
61
2021-06-27 20:28:22
80e58eb314d0d5e1a50be0c5fca0ca42cdda5e5297d6f7a2590840ac60504be1
24
61
2021-06-25 19:41:53
d919a4f237cb7da6738afbed8d0e5750ed0c48d072bf1e7343a2600d09807f7a
20

Rule Matches per Month (last 24 months)