PolyRansom malware family
PolyRansom is a malware family tracked by MalwareAnalyzer by Cyble across 4 publicly analyzed samples. First seen 2026-08-01, most recently 2026-08-02. Observed ATT&CK techniques include T1105, T1112, T1543.003.
Corpus statistics
- Publicly analyzed samples: 4
- First seen: 2026-08-01
- Last seen: 2026-08-02
- Verdicts: malicious 4
- File types: pe 4
ATT&CK techniques used by PolyRansom
Recent PolyRansom samples
- e6772c0aef5547205db1e5e70cddc963a91141435104e0d42dd2eca90059599a - malicious (2026-08-02)
- 61d8dbfd19d077e6fb7c8a1d7ade82a30e8b9498b731313969097e3786b6e0b3 - malicious (2026-08-02)
- virussign.com_603162643308fdd6cd71c7b144233780.vir - malicious (2026-08-01)
- virussign.com_9262316eff74334a3e339cc0582da2e0.vir - malicious (2026-08-01)
Frequently asked about PolyRansom
- What is PolyRansom?
- PolyRansom is a malware family tracked by MalwareAnalyzer by Cyble across 4 publicly analyzed samples. First seen 2026-08-01, most recently 2026-08-02. Observed ATT&CK techniques include T1105, T1112, T1543.003.
- How many PolyRansom samples have been analyzed?
- MalwareAnalyzer by Cyble holds 4 publicly analyzed samples attributed to PolyRansom, first seen 2026-08-01 and most recently 2026-08-02. This counts public submissions to this platform only, so it is a measure of what we have seen rather than of the family's total prevalence.
- What MITRE ATT&CK techniques does PolyRansom use?
- Across our PolyRansom samples the most frequently observed techniques are T1105 (2), T1112 (2), T1543.003 (2). Counts are the number of analyzed samples in which each technique was observed.
- What file types does PolyRansom use?
- PolyRansom samples in this corpus are distributed as pe (4).
- Is PolyRansom malicious?
- 4 of 4 analyzed PolyRansom samples were scored malicious by the fused verdict, which combines multi-engine static scanning, YARA and hash reputation with behavior captured during real sandbox detonation. Each report lists every signal that contributed to its score.
Latest analyzed threats · ATT&CK coverage across the corpus · Threat trends