MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18
SHA3-384 hash: 909235d42e9dfd7db787ca67718ca79296f2665b8532b2f0620fd25baa1e9d0550ac015512b6724cb8677a9279e98600
SHA1 hash: e6ca231037197506c9aaa61d56b07d0e13a08674
MD5 hash: 6044c50df19aef84c556172984267ba8
humanhash: crazy-orange-michigan-uniform
File name:TheWifeSecret.exe
Download: download sample
File size:95'983'616 bytes
First seen:2026-07-29 13:58:30 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 1572864:52Jzwbt/z+l1zAxJorsgdnen9qPsniUd:4Jzwbtal1z0ysge9qUiUd
TLSH T18528CF02A3E88599C0BFD139D57B550BE7F2BC695331D7CB1180597A2E73BE04A3A362
TrID 63.2% (.EXE) Win32 EXE PECompact compressed (generic) (41569/9/9)
9.9% (.EXE) Win64 Executable (generic) (6522/11/2)
7.6% (.EXE) Win16 NE executable (generic) (5038/12/1)
6.8% (.EXE) Win32 Executable (generic) (4504/4/1)
3.1% (.ICL) Windows Icons Library (generic) (2059/9)
Magika pebin
dhash icon 39e8ccd4f0f8d4cc (1 x RedLineStealer, 1 x ACRStealer)
Reporter lfr
Tags:exe


Avatar
lfr
https://blip-88.itch.io/the-wife-secret

https://www.virustotal.com/gui/file/30d66cf22405273adc3482f587044a2a2b901eba13588419625055b7703e0ba8/detection
https://www.virustotal.com/gui/file/ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18/detection

Intelligence


File Origin
# of uploads :
1
# of downloads :
182
Origin country :
FR FR
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:

Behaviour
Creating a window
Launching a service
Verdict:
Malicious
Labled as:
Win64/Agent_AGeneric.ONN trojan
Verdict:
Malicious
File Type:
exe x64
First seen:
2026-07-30T15:03:00Z UTC
Last seen:
2026-07-31T10:32:00Z UTC
Hits:
~100
Detections:
HEUR:Trojan.MSIL.Agent.gen
Gathering data
Threat name:
Win64.Trojan.Generic
Status:
Suspicious
First seen:
2026-07-29 14:06:04 UTC
File Type:
PE+ (.Net Exe)
Extracted files:
70
AV detection:
10 of 24 (41.67%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18

(this sample)

  
Delivery method
Distributed via web download

Comments