URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as PureHVNC.

Database Entry


Signature:PureHVNC
Firstseen:2026-02-16 10:30:07 UTC
Lastseen:2026-03-18 11:49:06 UTC
Unique Payloads:5
URLs:5

Payload


The table below shows all payloads that have been identified as PureHVNC.

Firstseen (UTC)SHA256File TypeFile sizeVT
2026-03-18 11:49:06356692ba173ea9fe8eafbf0173f6238d93f635e80061888b98a217477bfddcd2Executable exe644'096n/a
2026-03-18 08:05:082ebe789f6c34a6e27c8ba379fdcc7b8d30ae0997b5564d3a844c5f2f30039340Executable exe592'896n/a
2026-03-17 16:56:52363c13183a809554474b8286e02a0b62c6a864be56c40d134799a072fce87e88Executable exe643'072n/a
2026-03-13 06:29:06052fe35212937116240716b55603cb62ad3e76a2fa0464aa046225fa62a26e3246'769n/a
2026-02-16 10:30:07d2aa7cd8ec3ca9782b4ecffe1c2fc20b9ca6da3a999ade3c5df0d4b8b856d620Executable exe635'904n/a

Number of entries displayed: 5 (max: 1'000)