MalwareBazaar Database

This page shows some basic information the YARA rule HUNT_NET_Loader_ImagePixel_To_AssemblyLoad including corresponding malware samples.

Database Entry


YARA Rule:HUNT_NET_Loader_ImagePixel_To_AssemblyLoad
Author:Anish Bogati
Description:Hunting: .NET loader that reads pixel data from an embedded image, loads it as a .NET assembly, and runs it via reflection or late binding. Catches bitmap-steganography loaders.
Firstseen:2026-09-29 01:36:23 UTC
Lastseen:2026-09-29 13:51:35 UTC
Sightings:9

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter