6484d8ffd4a6de7947534571e9907b4e.dll
Classification: Malicious
6484d8ffd4a6de7947534571e9907b4e.dll is a malicious file sample. Linked to Squirrelwaffle malware. Reported by 1 threat source, last seen 2021-09-25.
Detection summary
- 31 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SQUIRRELWAFFLE (S1030)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Squirrelwaffle | Abuse.ch | 2021-09-25 08:02:26 | 2021-09-25 08:02:26 | malicious-activity | S1030 Squirrelwaffle |
Sample information
- Filenames
- 6484d8ffd4a6de7947534571e9907b4e.dll
- File type
- application/x-dosexec
- MD5
6484d8ffd4a6de7947534571e9907b4e- SHA-1
41e1cbd037698c3329db4edfe4e6b28b0654e94c- SHA-256
64a6039b2b3a347312f56170b5eb7deebe6d37ef6fb414fb929e84be4799dfa5- First indexed
- 2021-09-25 09:15:08
- Last updated
- 2026-04-22 18:35:09
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Trojan.GenericKD.47025694 |
| FireEye | Generic.mg.6484d8ffd4a6de79 |
| ALYac | Trojan.GenericKD.47025694 |
| Cylance | Unsafe |
| Sangfor | Trojan.Win32.Save.a |
| K7AntiVirus | Trojan ( 00587f7c1 ) |
| K7GW | Trojan ( 00587f7c1 ) |
| CrowdStrike | win/malicious_confidence_80% (D) |
| Cyren | W32/Qbot.FS.gen!Eldorado |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | a variant of Win32/Kryptik.HMPI |
| APEX | Malicious |
| Kaspersky | VHO:Trojan-Banker.Win32.Qbot.gen |
| BitDefender | Trojan.GenericKD.47025694 |
| Avast | Win32:MalwareX-gen [Trj] |
| Ad-Aware | Trojan.GenericKD.47025694 |
| Sophos | Mal/EncPk-APW |
| DrWeb | Trojan.PWS.Qbot.10 |
| Emsisoft | Trojan.GenericKD.47025694 (B) |
| GData | Trojan.GenericKD.47025694 |
| Avira | TR/Kryptik.jwgnd |
| MAX | malware (ai score=86) |
| Microsoft | Trojan:Win32/Qakbot.SM!MTB |
| Cynet | Malicious (score: 100) |
| Malwarebytes | Qbot.Backdoor.Stealer.DDS |
| Rising | [email protected] (RDML:LcoIK2KuxsCI5ondc8evog) |
| SentinelOne | Static AI - Malicious PE |
| Fortinet | W32/Kryptik.HLAD!tr |
| BitDefenderTheta | Gen:NN.ZedlaF.34170.uq6@auyBbhji |
| AVG | Win32:MalwareX-gen [Trj] |