URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as GrokPy.

Database Entry


Signature:GrokPy
Firstseen:2025-11-08 12:10:08 UTC
Lastseen:2025-11-25 03:56:08 UTC
Unique Payloads:7
URLs:7

Payload


The table below shows all payloads that have been identified as GrokPy.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-11-25 03:56:08239d6bd4b8e29a34d68e078c85a008e5e0a0fa02ae6c12cd33ecf0ed80e79680Executable exe14'518'301Virustotal results 17 / 72 (23.61)
2025-11-16 16:29:098bdc6cdcad8477122d419a0959b9beda78050818cb52f76d5c58826111e2caccExecutable exe13'378'431Virustotal results 22 / 72 (30.56)
2025-11-16 11:15:103a39a5cf2e339f17058d38f831daf5baf7e505b28ec44b5a69b457166b4af40bExecutable exe13'377'058n/a
2025-11-13 10:42:211ffb63dd833b16a12bc28ae562fd0b167bad3c078930b5dd5df63d71017afa56Executable exe13'377'815n/a
2025-11-09 12:14:1049190051d8cd990248abf029959da8236b23e90776b2c54055a962a455c0b994Executable exe13'358'946n/a
2025-11-08 13:25:11b2b57e825a973f5eb8fff37c60616392422ceaaf3f9cfc97337a3362a930f78fExecutable exe13'344'101Virustotal results 9 / 71 (12.68)
2025-11-08 12:10:0897e4171e2d8c1c9e7992b3c2ade49b7649ede9916777ed1db9935e6f95debf48Executable exe13'344'055Virustotal results 10 / 72 (13.89)

Number of entries displayed: 7 (max: 1'000)