MalwareBazaar Database
This page shows some basic information the YARA rule HUNT_NET_Loader_ImagePixel_To_AssemblyLoad including corresponding malware samples.
Database Entry
| YARA Rule: | HUNT_NET_Loader_ImagePixel_To_AssemblyLoad |
|---|---|
| Author: | Anish Bogati |
| Description: | Hunting: .NET loader that reads pixel data from an embedded image, loads it as a .NET assembly, and runs it via reflection or late binding. Catches bitmap-steganography loaders. |
| Firstseen: | 2026-09-29 01:36:23 UTC |
| Lastseen: | 2026-09-29 13:51:35 UTC |
| Sightings: | 9 |
Malware Samples
The table below shows all malware samples that matching this particular YARA rule (max 1000).
| Firstseen (UTC) | SHA256 hash | Tags | Signature | Reporter |
|---|