MalwareBazaar Database

This page shows some basic information the YARA rule Windows_Ransomware_Phobos_11ea7be5 including corresponding malware samples.

Database Entry


YARA Rule:Windows_Ransomware_Phobos_11ea7be5
Author:Elastic Security
Description:Identifies Phobos ransomware
Firstseen:2022-11-09 05:25:14 UTC
Lastseen:2025-09-04 12:12:09 UTC
Sightings:68

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter