URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Ramnit.

Database Entry


Signature:Ramnit
Firstseen:2020-11-10 09:02:23 UTC
Lastseen:2021-01-13 08:38:08 UTC
Unique Payloads:3
URLs:2

Payload


The table below shows all payloads that have been identified as Ramnit.

Firstseen (UTC)SHA256File TypeFile sizeVT
2021-01-13 08:38:08ee9378542050d13b1028b443f214d363dac7d11c1229e7e9054efde251d3e36bExecutable exe1'503'232Virustotal results 71 / 73 (97.26)
2020-11-10 09:58:1428af95bea8456409bdb09856b0f46304eff9801c3c841b1362ca7a794d7628a5Executable exe220'672n/a
2020-11-10 09:02:232f40f4d8e5fd1aeb0510e07f954f0f22f6d0e6644bae21bfcd5b913696c158cbExecutable exe212'480n/a

Number of entries displayed: 3 (max: 1'000)