URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Hancitor.

Database Entry


Signature:Hancitor
Firstseen:2018-04-11 20:03:54 UTC
Lastseen:2019-07-28 17:27:10 UTC
Unique Payloads:8
URLs:38

Payload


The table below shows all payloads that have been identified as Hancitor.

Firstseen (UTC)SHA256File TypeFile sizeVT
2019-07-28 17:27:10dcb7054c347d0f86dc22b80312daf63b704f56866397e70a691731ab2cc453cdWord file doc200'704Virustotal results 44 / 58 (75.86)
2019-07-09 17:01:03a5d793d4342073b7267db718e469007c26bd0528f538f6410a5aa02581ed14d2Word file doc199'680Virustotal results 43 / 61 (70.49)
2019-05-18 04:23:03af254a043469d5775b3c4a314859df5b2c3cce620722124eeb8cecada503a61dExecutable exe123'904Virustotal results 42 / 71 (59.15)
2019-04-16 16:19:5170d16fb632ff6b12eb08d873bee35d27a82df9f76ec4a21a1c09df7befa6ca8cExecutable exe106'496Virustotal results 12 / 66 (18.18)
2019-04-04 03:10:065e42ff5404aa8632852afeab9a95187be2bc8a44c37766efa2643b8f3a0bf929Executable exe98'304Virustotal results 14 / 72 (19.44)
2019-02-12 17:43:055cba28ccdc33258e580209009510934c235d177692cc1330d896e2fcab0d075bExecutable exe262'920Virustotal results 11 / 65 (16.92)
2018-09-06 17:49:583598a7ff304eef0a558bc4bd9fb34ab0f3355f0b97ba56ba05de6a0c80ed9e10Word file doc236'032Virustotal results 22 / 59 (37.29)
2018-04-11 20:03:5427a7605e5246074d4eb119785d12d21d98833859f2623d95d56f3b3d9d6c1f37Executable exe61'440Virustotal results 50 / 67 (74.63)

Number of entries displayed: 8 (max: 1'000)