URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as CelestialRAT.

Database Entry


Signature:CelestialRAT
Firstseen:2025-05-25 23:52:07 UTC
Lastseen:2025-05-26 03:04:06 UTC
Unique Payloads:2
URLs:2

Payload


The table below shows all payloads that have been identified as CelestialRAT.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-05-26 03:04:06a79dd8a9305570a1032c7d16ff2f1b2b0c6a44a857f977676181e5c9dc7f148dExecutable exe1'236'480n/a
2025-05-25 23:52:074d3c3ffd581a9f1e9e6e7b67e18da73ea2c042455466a7e80e9457a431ec25acExecutable exe1'234'944n/a

Number of entries displayed: 2 (max: 1'000)