MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 7
| SHA256 hash: | ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18 |
|---|---|
| SHA3-384 hash: | 909235d42e9dfd7db787ca67718ca79296f2665b8532b2f0620fd25baa1e9d0550ac015512b6724cb8677a9279e98600 |
| SHA1 hash: | e6ca231037197506c9aaa61d56b07d0e13a08674 |
| MD5 hash: | 6044c50df19aef84c556172984267ba8 |
| humanhash: | crazy-orange-michigan-uniform |
| File name: | TheWifeSecret.exe |
| Download: | download sample |
| File size: | 95'983'616 bytes |
| First seen: | 2026-07-29 13:58:30 UTC |
| Last seen: | Never |
| File type: | |
| MIME type: | application/x-dosexec |
| ssdeep | 1572864:52Jzwbt/z+l1zAxJorsgdnen9qPsniUd:4Jzwbtal1z0ysge9qUiUd |
| TLSH | T18528CF02A3E88599C0BFD139D57B550BE7F2BC695331D7CB1180597A2E73BE04A3A362 |
| TrID | 63.2% (.EXE) Win32 EXE PECompact compressed (generic) (41569/9/9) 9.9% (.EXE) Win64 Executable (generic) (6522/11/2) 7.6% (.EXE) Win16 NE executable (generic) (5038/12/1) 6.8% (.EXE) Win32 Executable (generic) (4504/4/1) 3.1% (.ICL) Windows Icons Library (generic) (2059/9) |
| Magika | pebin |
| dhash icon | 39e8ccd4f0f8d4cc (1 x RedLineStealer, 1 x ACRStealer) |
| Reporter | |
| Tags: | exe |
lfr
https://blip-88.itch.io/the-wife-secrethttps://www.virustotal.com/gui/file/30d66cf22405273adc3482f587044a2a2b901eba13588419625055b7703e0ba8/detection
https://www.virustotal.com/gui/file/ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18/detection
Intelligence
File Origin
# of uploads :
1
# of downloads :
182
Origin country :
FRVendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:
Behaviour
Creating a window
Launching a service
Verdict:
Malicious
Labled as:
Win64/Agent_AGeneric.ONN trojan
Verdict:
Malicious
File Type:
exe x64
First seen:
2026-07-30T15:03:00Z UTC
Last seen:
2026-07-31T10:32:00Z UTC
Hits:
~100
Detections:
HEUR:Trojan.MSIL.Agent.gen
Score:
6%
Verdict:
Benign
File Type:
PE
Gathering data
Threat name:
Win64.Trojan.Generic
Status:
Suspicious
First seen:
2026-07-29 14:06:04 UTC
File Type:
PE+ (.Net Exe)
Extracted files:
70
AV detection:
10 of 24 (41.67%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Malicious File
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
exe ac08f4de2a47aa64d78f1844d326d6822f1fc17dfc040ef36ee5a1028f326a18
(this sample)
Delivery method
Distributed via web download
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.