URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as SheetRAT.

Database Entry


Signature:SheetRAT
Firstseen:2024-12-06 08:19:22 UTC
Lastseen:2025-11-15 14:02:08 UTC
Unique Payloads:22
URLs:21

Payload


The table below shows all payloads that have been identified as SheetRAT.

Firstseen (UTC)SHA256File TypeFile sizeVT
2025-11-15 14:02:0831cd0a970953310b8cd8a5418eafb8a992e530cdb62ff19ddd72e15338e7ef71Executable exe666'112n/a
2025-11-14 07:38:19fc5c91700fb838ff8b8c95de4589abb550f4dad3699ff599fe27377f287a9c30Executable exe806'400Virustotal results 48 / 67 (71.64)
2025-11-14 03:21:083623c58bb4c00c7f73874e826199708a71eba343eec4820bd159bb12424bd69bExecutable exe805'888n/a
2025-11-08 14:58:06231fd53698c2b599aebbc7bc2ac24d813f06a20684283a4d9cfcebdc4004ad94Executable exe312'320n/a
2025-11-05 07:38:06ce9ffdd4c4aae628610a18c000844f4963d763f6c3c13181c243f351b26572c4Executable exe261'120Virustotal results 50 / 72 (69.44)
2025-11-05 07:38:0698d095613f420203d445efeca9e371f280b31f3045a206994d8b7269b2992be8Executable exe187'392Virustotal results 47 / 71 (66.20)
2025-09-15 21:11:30aeb87fa69750c8b7117ec7007727fbd11d6e385899074a964e6fef1e0f427cc1Executable exe881'152Virustotal results 41 / 72 (56.94)
2025-09-15 20:30:13f3c2bee63d4dd75081878822b5bca8f78bd9c6eaf4aa4e1582c2a7c65c2fe114Executable exe2'844'160n/a
2025-08-30 13:34:08edb9d3673a7a5bc9267794fdbf16ab4d551e129aa37d77510bf676352abcc1a7Executable exe185'344Virustotal results 56 / 72 (77.78)
2025-08-30 13:34:0727705c8f18bc99a7191851ebb609360ed86137ffb6f76740b1df2215b6f8bdd0Executable exe118'272Virustotal results 37 / 72 (51.39)
2025-07-21 10:50:07cc76b6eefedd4b5c2d9dfc5e2a243f3a231f0c1d89fe000ee49aa999a63fa631Executable exe201'056Virustotal results 42 / 72 (58.33)
2025-07-11 06:36:27788fd090e31d7978c2e10bd20393d621c693b48c45028809e6263b8687eda68eExecutable exe645'632Virustotal results 58 / 72 (80.56)
2025-07-06 23:18:43b8021499af34b8625235c33d64f37e8bbaca3706cb2b8751f34ddfc669019845Executable exe609'792n/a
2025-06-16 19:09:07f85ccd4d3037744b8ef70c665be5281abbb0178dc1f7379668237c6e9c658eadExecutable exe197'328Virustotal results 25 / 72 (34.72)
2025-06-04 08:07:054915daf756d001bfce02f28cd7328ccd3ea788c505eb3a5aac442bfc6d62b377Executable exe56'736Virustotal results 37 / 72 (51.39)
2025-06-04 08:06:0936a5538f434122beeeb79506d31ce3be687557556d00fbf25c0d4637c812ec52Executable exe1'719'808Virustotal results 33 / 59 (55.93)
2025-06-04 08:06:08ecf301abef36e37e207f82ec4ee02e76f0dcf2c79f92821dce2528013b677adfExecutable exe195'840n/a
2025-04-20 11:13:124f4bf47ee648cad9056fdc1a2cb427c846057d2fd668e3267956e68e746ab5bbExecutable exe2'752'000Virustotal results 42 / 72 (58.33)
2025-04-03 06:39:0416ace029c247b7facf6f8b470fe72bd7ccd1bfdb6b18675f8045d09fed9ae01aExecutable exe55'296Virustotal results 35 / 71 (49.30)
2025-03-30 21:15:06084a3386e4ed78fa71b3bc04ab39060e17649d322b66291000811b848c1732fbExecutable exe808'960Virustotal results 45 / 73 (61.64)
2024-12-12 15:28:09ed9d94e2dfeb610cb43d00e1a9d8eec18547f1bca2f489605f0586969f6cd6d6Executable exe1'070'080Virustotal results 54 / 72 (75.00)
2024-12-06 08:19:22c49762ff58d28b7182bcd956736ac58630b8a684ea6e8b6919e76bc9638125feExecutable exe743'936Virustotal results 60 / 75 (80.00)

Number of entries displayed: 22 (max: 1'000)