QuasarRAT - Malware Samples

140 samples tracked (rolling 30 days)

Last updated: 2026-06-10

This page lists the most recent QuasarRAT malware samples collected from MalwareBazaar. Each entry includes the SHA256 hash (linked to the MalwareBazaar sample page), original file name, file type, size, and VirusTotal detection rate where available. Samples are updated daily and retained for a rolling 30-day window.

How to Use This Data

Security teams can use these hashes in several ways. Import them into your SIEM or EDR platform to detect known QuasarRAT variants in your environment. Cross-reference file names against your email gateway logs to identify phishing campaigns delivering this family. The file type distribution reveals which delivery formats are currently in use - a shift from .exe to .msi or .js may indicate the operators are adapting to your defenses. Samples with low or missing VirusTotal detection rates are the most dangerous - these are fresh variants that may bypass signature-based protection.

About the Data

All samples are sourced from MalwareBazaar, a free malware sample sharing platform operated by abuse.ch. Detection rates come from VirusTotal. This data is provided for defensive purposes only. For the latest QuasarRAT indicators of compromise including C2 servers and domains, see the IOC page.

SHA256 File Name Type Size Detection First Seen Country
2e6fbd142bd5622d... hitclub.paris_113f01ee_q_chrome-update.exe exe 136.5 KB 58/69 2026-06-10 -
86ad203b4dfcd43b... hitclub.nagoya_6d604600_q_7zip-setup.exe exe 136.5 KB 57/70 2026-06-10 -
af4bf0887368a86e... citrum.io_077c34e8_q_acrobat-reader.exe exe 136.5 KB 55/68 2026-06-10 -
5903092322871269... 2sn7bt.sa.com_548e4112_q_zoom-updater.exe exe 136.5 KB 53/66 2026-06-10 -
1f2b22638ddb587f... SecuriteInfo.com.BackDoor.Quasar.277.6302.27172 exe 845.0 KB 46/60 2026-06-09 -
822d5678d27c0da2... SecuriteInfo.com.BackDoor.Quasar.277.4963.10672 exe 846.0 KB 52/70 2026-06-09 -
91be91c391126d56... SecuriteInfo.com.BackDoor.Quasar.277.23326.29524 exe 847.5 KB 51/70 2026-06-09 -
4cd298a3197f1283... RFQ-JUNE07062026.xlsm xlsm 142.9 KB 38/62 2026-06-09 -
4cf1a43a06108184... 4cf1a43a06108184d1ce4fd1c2dac70cdb98fdfb168e0949f84ce88a1e437a00 exe 4.4 MB 45/69 2026-06-08 -
b6120aa7ee8cf247... b6120aa7ee8cf2475648b7b8a287275e63e4a657b30694123ab8bf47463d5477 exe 840.5 KB 55/71 2026-06-08 -
d24d7f47e5310f6c... d24d7f47e5310f6c677c87815b935eb02d8b3ddc18a03f431dbda8dde82ab100 exe 4.5 MB - 2026-06-08 -
160c8b49da5574d0... 160c8b49da5574d0dca62e5e9393238b3bf1991662347aa29cea1325f5e7fc07 exe 837.5 KB - 2026-06-08 -
591724c3ba6313d1... 591724c3ba6313d16d21196d60230ed5ff414a50cfc6392c8a0afac25c64947d exe 840.0 KB - 2026-06-08 -
efd1e9646641faeb... efd1e9646641faebb9273e578cc09c0c87b6fef6164cb3e539a3750688a90bfe exe 841.5 KB - 2026-06-08 -
bbfb1b5542f73bfd... bbfb1b5542f73bfd598e587ccab52da52ff59ff120708900a0a15484deaa18fa exe 842.5 KB - 2026-06-08 -
4deebf56cf37840d... 4deebf56cf37840df28dcc8fbaaff10223300a0834f56.exe exe 3.1 MB 53/64 2026-06-05 -
ba8d38575e15f2a8... Valosysinfo.exe exe 318.5 KB 46/70 2026-06-05 -
aadee5080f4b1f68... weathernova.exe exe 3.1 MB 58/70 2026-06-04 -
77193b76e7142383... school-year-2025-26-calendar 2.exe exe 10.8 MB 38/68 2026-06-03 -
902d1dee3000361a... DHL_Orijinal_Sevkiyat_Belgeleri.xlsm xlsm 254.3 KB 39/63 2026-06-03 -
9b6e31817b788e4f... PO#062205.vbs vbs 431.7 KB 23/60 2026-06-02 -
7458c325a91844ae... 5tpap7.exe exe 1.1 MB 44/65 2026-05-31 -
730d931276281810... 0e8779ebf7ab7f48274f42af92017d0c.exe exe 727.0 KB 55/71 2026-05-30 -
62f608d61b28702c... Xeno-v1.3.50.exe exe 3.4 MB 37/49 2026-05-29 -
1ba40977145dbff6... file exe 348.0 KB 62/69 2026-05-29 -
7cc18c8995f128cd... meridablancainc.it.com exe 3.1 MB 59/70 2026-05-29 -
2fc9ef9039962562... Uni.bat bat 10.1 MB 25/59 2026-05-28 -
0464caa1c45cb753... 0464caa1c45cb753db25a95a30ce0b6814650b6f839a07cf8c2afdc143de7216 exe 3.1 MB 59/70 2026-05-28 -
007c13a26d76a128... 007c13a26d76a1281519960109bbf040ebdf5c497b00d4ffe0d0ac417cd8d33b exe 136.5 KB 56/70 2026-05-28 -
00f1da323b1e36d3... 00f1da323b1e36d3d24e3a06378dec95306971fdb7f1e1a760b079db39b96365 exe 3.1 MB 63/71 2026-05-28 -
d3a49cdef256d313... Full_Unboxing_Process_Inspection_Record.zip zip 98.5 MB 29/65 2026-05-27 -
1059c634050e3695... 1059c634050e3695bd7a7cf3c2fe3c0ed47ebd80d6e45d0a0c0a9dedabc2aa09(2) exe 6.8 MB 43/60 2026-05-27 -
07153220ad7f4acc... Madium-Boostrapper.bat bat 10.2 MB - 2026-05-26 -
a3b3c9e9c1c68df7... rPayment_24_05_2026.exe exe 841.0 KB - 2026-05-26 -
c65fd4c218ee4f11... Lulsec_Roblox_v1.0.0.5limitedbeta.exe exe 3.0 MB - 2026-05-26 -
9ac1c1dba1be97cd... Especificaciones del presupuesto _ PO-20260525048166 E2S A105N.pdf(783KB).lha.exe exe 5.7 MB - 2026-05-26 -
13e7bfcc010ebce3... YUKI.exe exe 3.1 MB 58/70 2026-05-16 -
f6edcb837b76ea1e... nhinconcac.exe exe 3.1 MB 62/71 2026-05-16 -
539f53d61ace3821... cliphot69.exe exe 3.5 MB 56/67 2026-05-15 -
15407e60bc4a797f... SISTEM~1.JS js 2.7 MB 11/61 2026-05-15 -
8843a708f2855097... tnganiudau.exe exe 3.1 MB 55/64 2026-05-15 -
41d8fab23ed16f69... loveyou.exe exe 3.1 MB 61/70 2026-05-15 -
b63861302724e707... bucactao.exe exe 3.1 MB 54/64 2026-05-15 -
5f5f33d963ef205e... mko2.exe exe 3.1 MB 62/71 2026-05-14 -
a8e9a8bebaf10e82... OperaUpdate.exe exe 3.2 MB 49/60 2026-05-14 -
f5f0e52163104f81... v5fueei.exe exe 2.6 MB 57/70 2026-05-13 -
078cb93f2f55e14d... 1doiliemkhiet.exe exe 3.1 MB - 2026-05-13 -
befd43899d3fd644... au88elite.exe exe 3.3 MB - 2026-05-13 -
8c3f86f92a95d282... chrome.exe exe 3.1 MB - 2026-05-13 -
551b085148561aad... file exe 2.5 MB - 2026-05-12 -
913a718ec5938aba... svchost.exe exe 3.1 MB - 2026-05-12 -
d3934da67f5f053a... ChromeUpdate.exe exe 3.1 MB - 2026-05-12 -
322f1fd8fe7bd2e9... 322f1fd8fe7bd2e929bd8ed40194d7ea64a13747cbb16060cfd848f7023c6a16 exe 3.1 MB - 2026-05-12 -
f137ebfc699dbff6... ru.exe exe 3.1 MB - 2026-05-12 -
9a874ff30b136bf7... Chrome Fixed (1).exe exe 3.2 MB - 2026-05-11 -
aa8cc486de5d801e... loopcareer.exe exe 3.3 MB - 2026-05-11 -
76e064c7de6abac0... lumora.exe exe 3.3 MB - 2026-05-11 -
168933cebaf75678... LOR.exe exe 3.1 MB - 2026-05-11 -
0f6666d17eb4036b... Client-built.exe exe 3.3 MB - 2026-05-11 -
00e6af4b4e3df4c0... 7z2600-x32.exe exe 3.1 MB - 2026-05-10 -
fcb77ddb165e5b55... playgamesonline.exe exe 3.3 MB - 2026-05-10 -
279cffbda7c1a6ba... Security_Update_Chrome.exe exe 3.1 MB 59/70 2026-05-09 -
5a0e7fd4d8cb6ad7... ChromeSetup (1).exe exe 3.2 MB 56/70 2026-05-08 -
7f480546f41135ae... cec.exe exe 3.5 MB 48/62 2026-05-05 -
e67b2183d29858ca... Client-built.exe exe 3.1 MB 54/70 2026-05-05 -
028da5b007198094... fixer.exe exe 3.1 MB 52/68 2026-05-05 -
d2d9ed0083fdee88... JVTypehaplPrfAyvmTowiOuFULGZDYrR.bat bat 3.0 MB 4/56 2026-05-04 -
47cf6beeea87c5eb... Telegram.exe exe 4.1 MB 21/66 2026-05-04 -
ef19d077de5b50ab... starkbucks.exe exe 645.5 KB 44/69 2026-05-04 -
b5b6a5431aac5ef2... Client-built.exe exe 1.8 MB 47/61 2026-05-03 -
dc2905b5e1cf7f50... file exe 7.7 MB 24/70 2026-05-03 -
94b3610234806a26... x94b3610234806a266b77b547e75ac4f364b2ffbabe14.exe exe 6.5 MB 37/70 2026-05-03 -
1e49e5f2d02d715b... file exe 2.0 MB 15/67 2026-04-30 -
b11b82e5cf984a4b... GayLocker.exe exe 1.2 MB 46/61 2026-04-28 -
9703a4c17ec31dae... weauhf.bat bat 3.0 MB 5/58 2026-04-28 -
da231f0ce2a812ce... WebSocketHost.exe exe 3.1 MB 53/71 2026-04-27 -
59b1dad8d2dbbd30... Kuailian_vpn_setup_pic_x64.7.2.5.exe exe 36.3 MB 25/71 2026-04-26 -
84e44959d7c5d545... LetsVPN.exe exe 36.3 MB 14/71 2026-04-25 -
1b3577d4ef4e5539... luomaÕôìÕ¦ö.msi msi 4.0 MB 20/61 2026-04-25 -
eaa88387f08ecfa5... lineinst.msi msi 4.6 MB 26/61 2026-04-25 -
2e9892827c1b83c1... NqzZ9cVR6iDnn9.ps1 ps1 1.3 MB 19/62 2026-04-24 -
efe82e4361366e5b... LOL.ps1 ps1 984.4 KB 16/61 2026-04-24 -
15a403882bbe98cc... update.bat bat 1.3 MB 7/52 2026-04-24 -
8f0da210c208c56b... STRIP.ps1 ps1 508.4 KB 7/62 2026-04-24 -
d73c744730846424... tmp2DCD.tmp.bat bat 685.6 KB 11/61 2026-04-24 -
3b16f98ebdbe6b3a... schtasks.exe exe 441.5 KB 59/71 2026-04-24 -
4f64aa9ec86fdc36... kalyanoffice.exe exe 3.1 MB 51/72 2026-04-24 -
40cf8d5cabb6458f... potato.ps1 ps1 1.0 MB 5/63 2026-04-23 -
a08cdda2d228917a... P0QXDWMcGsKAm.ps1 ps1 1.9 KB 18/62 2026-04-23 -
6a3ca2af5a54ddb0... bDci2sip.vbs vbs 737 B 22/61 2026-04-23 -
2607e5958a006f03... libfilezilla-43.bin exe 14.0 MB 42/67 2026-04-17 -
7b50a77b13d232c2... StartMenuExperienceHost.exe exe 3.4 MB 56/70 2026-04-17 -
ce59916ff52c012f... SearchIndexer.exe exe 3.2 MB 56/68 2026-04-17 -
e9bf8b0cc4f99ab8... client.exe exe 2.0 MB 44/72 2026-04-16 -
70eae1c2d854c64b... LetsVPN2.exe exe 36.2 MB 15/72 2026-04-16 -
6029a278d4c0525b... usbfallback.exe exe 3.1 MB 61/71 2026-04-15 -
4259fab18ffddd4b... start_qsr.ps1 ps1 2.2 KB 3/60 2026-04-14 -
ee47323ef7a520b2... aIg_173_55_2.zip zip 1.2 MB 42/68 2026-04-14 -
a44fd6518013d5ea... aIg_173_55.zip zip 1.2 MB 49/69 2026-04-14 -
59057eb3a372cf2c... aIg.exe.88 exe 3.1 MB 52/72 2026-04-14 -