{"id":"ebdcba267a02d8ac1093dfae07bae88d","title":"Rust HTTP Loader DLL — Rust HTTP Loader DLL · 木马/恶意软件 · PE64","md5":"ebdcba267a02d8ac1093dfae07bae88d","sha256":"a4c6bcde72216f0168d6356410960d9cb0f648e31fd9ead093f32119e4157cbb","family":"Rust HTTP Loader DLL","apt":null,"verdict":null,"sample_type":"木马/恶意软件","lang":"Rust","file_format":"PE64","compiler":"Rust (x86_64-pc-windows-msvc) / MSVC 2022","published_at":"2026-08-09T16:00:00.000Z","summary":"该样本为 Rust 编译的 PE64 DLL (x86_64-pc-windows-msvc, MSVC 2022 Linker 14.36)。使用动态 API 解析 (GetProcAddress + LoadLibraryExW) 加载 WinHTTP API，表明刻意隐藏 API 导入。WinHTTP 用于 HTTP/HTTPS 通信。987KB 的 DLL 体积较大，可能包含多个功能模块。动态 API 解析 + WinHTTP 组合是恶意软件加载器和 C2 植入物的典型特征。","url":"https://zseceye.com/report/ebdcba267a02d8ac1093dfae07bae88d","json_url":"https://zseceye.com/report/ebdcba267a02d8ac1093dfae07bae88d.json","html_url":"https://zseceye.com/report/ebdcba267a02d8ac1093dfae07bae88d","hash_urls":{"md5":"https://zseceye.com/hash/ebdcba267a02d8ac1093dfae07bae88d","sha256":"https://zseceye.com/hash/a4c6bcde72216f0168d6356410960d9cb0f648e31fd9ead093f32119e4157cbb"},"search_urls":{"md5":"https://zseceye.com/?q=ebdcba267a02d8ac1093dfae07bae88d","sha256":"https://zseceye.com/?q=a4c6bcde72216f0168d6356410960d9cb0f648e31fd9ead093f32119e4157cbb"},"sample_download_url":"https://zseceye.com/report/ebdcba267a02d8ac1093dfae07bae88d/sample","sample_filename":"a4c6bcde72216f01.zip","iocs":[],"ips":[]}