MalwareBazaar Database

This page shows some basic information the YARA rule CobaltStrike_Resources_Artifact64_v3_14_to_v4_x including corresponding malware samples.

Database Entry


YARA Rule:CobaltStrike_Resources_Artifact64_v3_14_to_v4_x
Author:gssincla@google.com
Description:Cobalt Strike's resources/artifact64{.exe,.dll,svc.exe,svcbig.exe,big.exe,big.dll,.x64.dll,big.x64.dll} and resource/artifactuac(alt)64.exe signature for versions v3.14 through v4.x
Firstseen:2023-01-08 14:42:26 UTC
Lastseen:2025-10-06 10:19:46 UTC
Sightings:58

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter