URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Ransomware.Xorist.

Database Entry


Signature:Ransomware.Xorist
Firstseen:2021-01-04 15:53:03 UTC
Lastseen:2025-02-14 15:00:04 UTC
Unique Payloads:5
URLs:5

Payload


The table below shows all payloads that have been identified as Ransomware.Xorist.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-02-14 15:00:04809ace7cfbca9f9a1f385fbd0a07c07c8d145a52075e936ca808b8365e22b4d1Executable exe23'040Virustotal results 57 / 72 (79.17)
2023-01-02 09:19:04aab1afbc7706030c1b710c6ae0873fd22de1190604301d0df17e1acae972ef7c572'848Virustotal results 51 / 67 (76.12)
2022-03-03 11:04:12edfdcec55efa1d9d883ccf962f641b810cbff60187414cb762eb6ec4cc5b1a18Executable exe107'520Virustotal results 51 / 69 (73.91)
2022-03-03 08:06:53edfdcec55efa1d9d883ccf962f641b810cbff60187414cb762eb6ec4cc5b1a18Executable exe107'520n/a
2021-01-04 15:53:03fb54a1b85ab37cdee346e06cf716cbe0b071f4833020823595f3b69614c5446eExecutable exe7'680Virustotal results 58 / 69 (84.06)

Number of entries displayed: 5 (max: 1'000)