URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as QatarRAT.

Database Entry


Signature:QatarRAT
Firstseen:2025-12-09 20:30:08 UTC
Lastseen:2026-01-29 19:09:12 UTC
Unique Payloads:5
URLs:5

Payload


The table below shows all payloads that have been identified as QatarRAT.

Firstseen (UTC)SHA256File TypeFile sizeVT
2026-01-29 19:09:121866a1b6c1c64997769312d513eeee808f633fad3b31f45da6d4c957fa8dd052Executable exe8'088'064n/a
2026-01-29 19:09:094eb10256903d23fe98c1b28886409ce9fb76a86fa31cdc11f87f42790c915694Executable exe6'334'464n/a
2026-01-29 19:09:07d6794a5fe565bdb5451694d27c34b535409274e508b1400b7a7ccd823970d3d6Executable exe7'863'296n/a
2025-12-09 21:41:06c34b5c5d3ca6e8ef51084329d45397a4533e736d7af5eb33d5845c689ab9c3f9Executable exe718'848Virustotal results 6 / 72 (8.33)
2025-12-09 20:30:08c34b5c5d3ca6e8ef51084329d45397a4533e736d7af5eb33d5845c689ab9c3f9Executable exe718'848n/a

Number of entries displayed: 5 (max: 1'000)