URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Hancitor.

Database Entry

Firstseen:2018-04-11 20:03:54 UTC
Lastseen:2018-09-06 17:51:27 UTC
Unique Payloads:2


The table below shows all payloads that have been identified as Hancitor.

Firstseen (UTC)SHA256File TypeFile sizeVT
2018-09-06 17:49:583598a7ff304eef0a558bc4bd9fb34ab0f3355f0b97ba56ba05de6a0c80ed9e10Word file doc236'032Virustotal results 22 / 59 (37.29)
2018-04-11 20:03:5427a7605e5246074d4eb119785d12d21d98833859f2623d95d56f3b3d9d6c1f37Executable exe61'440Virustotal results 50 / 67 (74.63)

Number of entries displayed: 2 (max: 1'000)