herdprotectscan_setup.zip

Warning, this is an unsigned version of herdProtect and might be compromised. If you have this version on your PC please remove it and install a legitimate version from our website.
The file has been seen being downloaded from public.boxcloud.com and multiple other hosts.
MD5:
894927cd3d64ae21a6ffd38c08dfd16c

SHA-1:
8646d554de6eda58706e63c618aff46b671d7d5c

SHA-256:
94f7b10a9dfb5dfd678af3999c524951c3c8fc4d1fa46c13f1879569ae266f64

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
2/25/2025 8:19:59 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
Detection.Undefined
7.0.302.0

Rising Antivirus
PE:Malware.ArcadeWeb!6.727
23.00.65.15323

File size:
2.6 MB (2,764,595 bytes)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\temporary internet files\content.ie5\{random}\herdprotectscan_setup.zip

The file herdprotectscan_setup.zip has been seen being distributed by the following 34 URLs.

https://public.boxcloud.com/d/.../06GpOgjjKV-qKjT6Ytj2u4F2jXgndifjVXFyvlTkIxjfMaWVFs7rbymWTLSCml1hB-tL5HA_GpCdUPtfVsyQ_vEWryrrxViG6MjnuaxBh5l7I7SjDZQRef0z3-JNsjT0MWeqF1O9mnTRPMIfgbe_fBPGEy7f2mk8uj7XhnpqhBCCODXuQz7YU3Z9D5DEC1dhrYsg70tLVCNsHSdrcL3gNS1FqYFi7S_QgJdmDpBdLskcaVoBTSefMQGiVg0GqurXOf4hs5Jh6nSkQn4XdcLprwnXPbgFjw718NUfocmbf80G2aEDXc2fl9D-X3oBbYKqpsbX3wM9JBC81d2iTFN0cwwJn8ZDiB6Vh09oMjz-VUyc8cSYWiyuGmvm_KLOISEL0gX5KBQC2p9VxsHQcDIuU5loIDPt73MwPmsYqmmrynibmy1N5CTp6TMp0A7Exc5yfcrv2NcWz0n1Kqm8AVbDiRJhWGxRdTdP9xJb9bSj75oalz0mwwDzHGoEdztE_OF_UrANrjCog0yMWOCElGL5QM9jEQIKlg6oGUykMqxLBC0AC_PnJjwSK4zxbrmFgszUOwd-eYSggS87tyG3ZErVfL9_uouTLYsHG3uQ7PuBo1S6Fiv6ZcdP0IQI_JrdskI8UTQq1r2sbsAXc3vseOMUjOlE2iyhfHnsgVT9QC7LiffMDUkd24naOondixUeEej8wumRynMUZggyUid2K6PRrQYcqEExZ744Iczp4iJ_nB0h9ib4KEK11KyxWVxIygH_5MndptDz12HYYNXXIiYS9bHs0mOPFivQOHObjZGO1WKqtzVJLEgjGj2qaFkLsJw8PMA83DoKUiniXqdYRrEA_K1NL4SCfRP8Z_cW6KzbnMZQIoY4H4Z78NIut4kEhIY3Du-oWo_wit4ILFkua2B6tJVdB2BCZMCY5yChA5SCJhbqPJ7HD1xaBBWG0A-YXwlVOJ6GvfsM

http://acrdshare/sites/IT/.../herdProtectScan_Setup.zip

Latest 30 of 34 download URLs

Scan herdprotectscan_setup.zip - Powered by Reason Core Security