Name | ff277a5e33ec98ad_qplus.dll |
---|---|
Filepath | C:\ProgramData\qPlus.dll |
Size | 176.5KB |
Processes | 2232 (mshta.exe) |
Type | PE32 executable (DLL) (GUI) Intel 80386, for MS Windows |
MD5 | 3c2244956646acde36ff20732eb63071 |
SHA1 | f218a9c08cb26388223600bf3691a90be4cdfb7b |
SHA256 | ff277a5e33ec98ad5f0945834f731e39fa2113ac0369ade14fc690a9d1a7cc31 |
CRC32 | 312E5BE4 |
ssdeep | 3072:iVadvfvemTEtQ9yoZPW/k/nklVtu77wBeZUCEQZRpABDp57WQhdIif4:LDTyJWPd/nkdqw4/HAB77WQhdIu |
Yara |
|
VirusTotal | Search for analysis |
Name | ca38f9c1e8779901_klrangeautoformatreport9.sct |
---|---|
Filepath | C:\ProgramData\klRangeAutoFormatReport9.sct |
Size | 6.2KB |
Processes | 2076 (EXCEL.EXE) |
Type | HTML document, ASCII text, with very long lines, with CRLF line terminators |
MD5 | 9370ac0b352dc60f52eb21659d817742 |
SHA1 | bb5aece3c68c3352320037a21586a5d28b6633e1 |
SHA256 | ca38f9c1e877990183e27b613b593154e8b8af2bd916a017a0255cb86dbba06e |
CRC32 | BC75101E |
ssdeep | 192:gHic1HicuHicM3HicuHicUHic8HicuHilPiuHiPwuHicuHicSFcuHiN:gHVHOHqHOH0HcHOHIP7HM9HOHyHHi |
Yara | None matched |
VirusTotal | Search for analysis |