URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Ransomware.Mimic.

Database Entry


Signature:Ransomware.Mimic
Firstseen:2025-06-01 07:35:16 UTC
Lastseen:2025-08-22 13:56:16 UTC
Unique Payloads:4
URLs:4

Payload


The table below shows all payloads that have been identified as Ransomware.Mimic.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-08-22 13:56:16518e83f226c9a0ab4bfd27b3561331da201041c1c88c38e17b0dcdb4c8a7b742Executable exe5'315'024Virustotal results 14 / 64 (21.88)
2025-08-22 12:50:18fce5f95d9a8d8a4003af3fd63365d5f3a7746536d054d290534674fa8ef4b844Executable exe5'349'799Virustotal results 24 / 71 (33.80)
2025-06-01 07:35:170ff90e51f04083e8bb34bb7a414a9b28a5e0264e152ac086e64b548e5a771956Executable exe15'587'142Virustotal results 48 / 70 (68.57)
2025-06-01 07:35:1610157499f507352e37a313393c24d5024123c5a4d557fc509094bad4652ddc86Executable exe7'997'456Virustotal results 54 / 72 (75.00)

Number of entries displayed: 4 (max: 1'000)