URLhaus Database

URLhaus tries to identify the malware associated with the payload served by a certain malware URL. In case URLhaus is able to identify the associated malware family, the payload will be tagged accordingly (field signature). The page below gives you an overview on payloads that URLhaus has identified as Worm.Ribaj.

Database Entry


Signature:Worm.Ribaj
Firstseen:2019-05-28 09:31:02 UTC
Lastseen:2019-07-30 19:19:06 UTC
Unique Payloads:7
URLs:5

Payload


The table below shows all payloads that have been identified as Worm.Ribaj.

Firstseen (UTC)SHA256File TypeFile sizeVT
2019-07-30 19:19:06146b98c91f1fd3828ef5e091049809c5d0a3562f051d9e9d36f736ee70afa432Executable exe89'600Virustotal results 56 / 74 (75.68)
2019-06-16 19:02:363b106940e603673ebc14aa001edd561b30ad5f6777c614f3ae8ae2a1c2394e58Executable exe1'336'832n/a
2019-06-13 11:09:11ae05c8420119e05563a9dbc02cd1d3d854e6cbddbbb8d90b1fc4469f2975a982Executable exe1'483'264n/a
2019-06-10 15:49:11fae2c213299eb55fd95233f71fcad2a73e6d11cde778509293bbfefaff3da72dExecutable exe770'048n/a
2019-06-07 19:35:06cc97342c2b9e3a56191746420cea60436c3ff920a08012af88c74a408881824fExecutable exe304'124n/a
2019-06-06 23:24:044f93279a7f5878aa7d61aa1019351e4cedd82ada382ab588c1c7aca9b8cd4da7Executable exe303'300n/a
2019-05-28 09:31:02bb5dab56181dbb0e8f3f9182a32e584315cd1e6e2fedb2db350e597983f0e880Executable exe295'936Virustotal results 14 / 72 (19.44)

Number of entries displayed: 7 (max: 1'000)