URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Rubeus.

Database Entry


Signature:Rubeus
Firstseen:2022-08-03 07:42:04 UTC
Lastseen:2025-08-13 08:26:05 UTC
Unique Payloads:10
URLs:10

Payload


The table below shows all payloads that have been identified as Rubeus.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-08-13 08:26:056feba2bc4cbceb767f2d765dabc7ef4d0145d755a630fd0eaddd4f2550158cc6Executable exe472'064Virustotal results 35 / 66 (53.03)
2025-06-13 08:21:081bfbefa4ff4d0df3ee0090b5079cf84ed2e8d5377ba5b7a30afd88367d57b9ffExecutable exe446'976Virustotal results 58 / 71 (81.69)
2025-05-29 11:36:051bfbefa4ff4d0df3ee0090b5079cf84ed2e8d5377ba5b7a30afd88367d57b9ffExecutable exe446'976Virustotal results 60 / 72 (83.33)
2024-11-06 11:55:1308df8b5dffd969737f25bdd7d089ba40787c77c64ef3ef313a93b1a0d5ae6c34Executable exe301'056Virustotal results 55 / 70 (78.57)
2024-11-06 11:55:1208df8b5dffd969737f25bdd7d089ba40787c77c64ef3ef313a93b1a0d5ae6c34Executable exe301'056Virustotal results 55 / 70 (78.57)
2024-09-28 08:58:081bfbefa4ff4d0df3ee0090b5079cf84ed2e8d5377ba5b7a30afd88367d57b9ffExecutable exe446'976Virustotal results 60 / 73 (82.19)
2024-09-26 07:11:05b8c355789bafdf1eb52afb235a2255ef1da7e813248e02b06a6041e11c354788Executable exe427'520Virustotal results 54 / 72 (75.00)
2024-09-15 13:20:15b8c355789bafdf1eb52afb235a2255ef1da7e813248e02b06a6041e11c354788Executable exe427'520Virustotal results 36 / 71 (50.70)
2024-08-02 14:16:051449606e35b48c2a4e704d2dc1b16a887d9664bbc9fb04f020ad141695890226Executable exe462'848Virustotal results 49 / 73 (67.12)
2022-08-03 07:42:0400c5cbf50c23fceebe76e18e53699cadf94d345edfba1356f21c1e37205bdc58Executable exe347'136Virustotal results 44 / 71 (61.97)

Number of entries displayed: 10 (max: 1'000)