URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as ScarfaceStealer.

Database Entry


Signature:ScarfaceStealer
Firstseen:2026-02-07 00:08:37 UTC
Lastseen:2026-02-08 09:36:46 UTC
Unique Payloads:3
URLs:2

Payload


The table below shows all payloads that have been identified as ScarfaceStealer.

Firstseen (UTC)SHA256File TypeFile sizeVT
2026-02-08 09:36:46bca70f1cf0487beef8eb88bf29d7ee39e732092e80f2fe61f891ae09eb408b54Executable exe13'072'896n/a
2026-02-07 07:25:4325c08817256845bbafed63ab1a5a579ac75d6052d679549e2ab7039bcf161a63Executable exe13'040'640n/a
2026-02-07 00:08:37fbe6d6ad999f6d7e3a63ca8c38ff1130302159704dbf0ae1cab652a353ec8615Executable exe13'946'880n/a

Number of entries displayed: 3 (max: 1'000)