FROZENHILL
- Malware type
- loader, dropper
- Profile updated
- 2026-07-07 15:02:09
Targeted industries: government-and-public-sector financial-services
Context
FROZENHILL is a launcher written in C++ that is configured to utilize existing files for execution and also infects newly attached storage volumes with additional malware.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Frozenhill_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Frozenhill (report)
- cloud.google.com — Infected Usb Steal Secrets (report)