Statistics

Detection coverage and corpus trends per file type

← Back to analyzer

Total files analysed 1,525,574
Distinct file types 9
Computed 2026-06-25T02:22:16.115290+00:00

Recent scans

SHA-256 Type Verdict Score Scanned
fd69c54d21a98beb85e3f8e3bbe83cf89766b3fe167f9d554ac9ac20b7719a6c Office (OOXML) MALICIOUS 306 2026-06-24T10:31:06.903058+00:00
fa2deccfd3c425e0e9f0819b02e30c77e4e9ba1e9889c1cf402cb519cf60f5af Office (OOXML) MALICIOUS 306 2026-06-24T10:31:06.281922+00:00
f6cee342e1b1c74d2474b4425eeca99d60d90a4bd2a32f4eea46f3256ec8d645 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:06.139250+00:00
f56864a3e714097044e69aecd390cc55178785250f97a628e60278adb8668c94 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:06.041394+00:00
f567e865a0a1ba5546027875d4f61a37e831fbd4d08c39c6bfd72e73b4d4d111 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:05.981762+00:00
f08e8118f16b07a0cdcf9ce96f3fa028aedaaba7655db8990080b0d2717e8dc0 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:05.236791+00:00
f0833898b426abf05b5f5f25d580d01f9fce5e00957d60da9fd793c90beda877 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:04.342922+00:00
f08346b3e767eacad61408f0c8bc42b646a41b3a0bd3ce445917dfd7cd854edd Office (OOXML) MALICIOUS 306 2026-06-24T10:31:04.234431+00:00
f080f50cff7b0bf94c89946335647b602a482e29b5b5c6b769edaff91881f4f8 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:04.176675+00:00
ed7c47759547bcb19d82c95f3639c170210cb12088db5351391882379fc46ed0 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:03.911973+00:00
eba4e27fdec4265401ba692486a877c4a9d3619749ad9fcd56602f0fcc86a40b Office (OOXML) MALICIOUS 378 2026-06-24T10:31:03.209717+00:00
ecff5f396d0eb5d36ddba931be01d24bd5ab29544cf675d2645e69e6cfc38bb5 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:02.612810+00:00
ecf6f73258f654bc8d03fee807113593645ef6dfba09d774ce21c0f91b7ba42a Office (OOXML) MALICIOUS 306 2026-06-24T10:31:02.473705+00:00
e472414f10f3c05d1e4dd5d90faaecfa34d123d17ab5fe56242bf697bd11ca32 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:02.074077+00:00
e29e9dc16d47abf60daeede41cf6ef62debf6a6f97b1c30098a09d1db51ce8f2 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:01.837581+00:00
e281d81e7d09b40a74b8e1d447d36081517d4842655f5af35555ad0495f65e7e Office (OOXML) MALICIOUS 306 2026-06-24T10:31:00.592823+00:00
d904e48ec9ea4a2cf2f33291b4aeee164560183a04685867f4e278bbb5e7587b Office (OOXML) MALICIOUS 306 2026-06-24T10:31:00.273119+00:00
d428500849eca663092c37d1dfcf8245dc7842e92618ae3ff1cc3ce33f32b278 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:00.172586+00:00
d850f19e0923afab6cab37df76a23e19faa52197aecc2473bf4c4704613d24a8 Office (OOXML) MALICIOUS 306 2026-06-24T10:31:00.152559+00:00
d4249865673e138729d07862273600f66f99559d9a664cca2aa63dc4af2bd80f Office (OOXML) MALICIOUS 306 2026-06-24T10:31:00.026522+00:00
d42257d6338bf8afab40e8de6c13f9c0b666f7a71b3be45f9c5ebee2a5c87b01 Office (OOXML) MALICIOUS 306 2026-06-24T10:30:58.641844+00:00
d2192a9f0ab58d86743fe3b935cf52b736823e1f53daf3c486a9306bad814ddf Office (OOXML) MALICIOUS 306 2026-06-24T10:30:58.432158+00:00
d210248709bdf92094d584ca3cf39702964e6cbac38b978f202174103b2ce184 Office (OOXML) MALICIOUS 306 2026-06-24T10:30:58.153248+00:00
d01becbf73281b2d21e6a39f507cbbab9ea327625316356724afc5b89b134bcf Office (OOXML) MALICIOUS 306 2026-06-24T10:30:58.139365+00:00
d01b751c7823b67c7bf3d499cd83125d7836e1258a590acb485449eb7f0f4a1e Office (OOXML) MALICIOUS 306 2026-06-24T10:30:57.966759+00:00

PDF

1,311,874 files
Clean 5,931
Suspicious 55,615
Malicious 1,250,319
Error 9

Most-triggered heuristics

ML_NYX_PDF_MALICIOUS: 1,288,135 (18.3%)EMBEDDED_URL: 1,269,944 (18.0%)CLAMAV_DETECTION: 957,713 (13.6%)PDF_URI: 823,586 (11.7%)PDF_DUPLICATE_OBJ_BODY_INCREMENTAL: 817,197 (11.6%)PDF_SEO_DISPOSABLE_LINK_FARM: 636,753 (9.0%)PDF_COMPROMISED_CMS_UPLOAD_LINK_FARM: 474,288 (6.7%)PDF_JS: 289,407 (4.1%)PDF_SEO_LINK_FARM: 255,247 (3.6%)EXTRACTED_FILE_STATIC_TRIAGE: 242,278 (3.4%)
  • 1,288,135 (18.3%)
  • 1,269,944 (18.0%)
  • 957,713 (13.6%)
  • 823,586 (11.7%)
  • 817,197 (11.6%)
  • 636,753 (9.0%)
  • 474,288 (6.7%)
  • 289,407 (4.1%)
  • 255,247 (3.6%)
  • 242,278 (3.4%)

Office (OLE)

132,516 files
Clean 1,685
Suspicious 1,958
Malicious 128,870
Error 3

Most-triggered heuristics

EMBEDDED_URL: 105,365 (18.5%)CLAMAV_DETECTION: 88,081 (15.5%)OLE_VBA_MACROS: 79,425 (14.0%)OLE_VBA_PCODE_AUTOEXEC_EXEC: 55,083 (9.7%)OLE_XLM_AUTOOPEN: 48,821 (8.6%)OLE_VBA_CREATEOBJ: 47,247 (8.3%)OLE_XLM_AUTOOPEN_DEFINEDNAME: 43,627 (7.7%)OLE_VBA_DOCOPEN: 42,314 (7.4%)OLE_XLM_DANGEROUS_FN: 32,705 (5.8%)SE_ENABLE_LURE: 26,021 (4.6%)
  • 105,365 (18.5%)
  • 88,081 (15.5%)
  • 79,425 (14.0%)
  • 55,083 (9.7%)
  • 48,821 (8.6%)
  • 47,247 (8.3%)
  • 43,627 (7.7%)
  • 42,314 (7.4%)
  • 32,705 (5.8%)
  • 26,021 (4.6%)

Office (OOXML)

69,507 files
Clean 1,544
Suspicious 1,675
Malicious 66,225
Error 63

Most-triggered heuristics

EMBEDDED_URL: 59,495 (20.9%)OOXML_XLM_MACROSHEET: 52,298 (18.3%)OOXML_XLM_BINARY_WINAPI_STRINGS: 34,391 (12.1%)OOXML_XLM_CELL_ARRAY_URL: 29,703 (10.4%)CLAMAV_DETECTION: 26,355 (9.2%)OOXML_XLM_REASSEMBLED_PAYLOAD: 26,350 (9.2%)OOXML_XLM_DANGEROUS_FN: 17,065 (6.0%)OOXML_XLM_AUTOOPEN_DEFINEDNAME: 16,447 (5.8%)OOXML_HIDDEN_SHEET: 12,369 (4.3%)OOXML_VBA: 10,600 (3.7%)
  • 59,495 (20.9%)
  • 52,298 (18.3%)
  • 34,391 (12.1%)
  • 29,703 (10.4%)
  • 26,355 (9.2%)
  • 26,350 (9.2%)
  • 17,065 (6.0%)
  • 16,447 (5.8%)
  • 12,369 (4.3%)
  • 10,600 (3.7%)

RTF

11,473 files
Clean 309
Suspicious 177
Malicious 10,987
Error 0

Most-triggered heuristics

RTF_OBJDATA: 11,055 (23.7%)RTF_OBJUPDATE: 9,550 (20.5%)RTF_EQUATION_EDITOR: 6,176 (13.2%)RTF_OBJEMB: 5,168 (11.1%)EXTRACTED_FILE_STATIC_TRIAGE: 3,418 (7.3%)EMBEDDED_URL: 3,290 (7.1%)CLAMAV_DETECTION: 2,765 (5.9%)RTF_OBJAUTLINK: 2,144 (4.6%)SE_ENABLE_LURE: 1,703 (3.7%)RTF_OLE10NATIVE_STREAM: 1,353 (2.9%)
  • 11,055 (23.7%)
  • 9,550 (20.5%)
  • 6,176 (13.2%)
  • 5,168 (11.1%)
  • 3,418 (7.3%)
  • 3,290 (7.1%)
  • 2,765 (5.9%)
  • 2,144 (4.6%)
  • 1,703 (3.7%)
  • 1,353 (2.9%)

Hangul (OLE)

160 files
Clean 48
Suspicious 76
Malicious 36
Error 0

Most-triggered heuristics

HWP_COMPRESSED: 160 (40.1%)OLE_SLACK_ANOMALY: 73 (18.3%)EMBEDDED_URL: 37 (9.3%)EXTRACTED_FILE_STATIC_TRIAGE: 30 (7.5%)HWP_POSTSCRIPT: 19 (4.8%)HWP_PS_FILE: 19 (4.8%)OLE_APPENDED_PAYLOAD: 18 (4.5%)HWP_URL: 16 (4.0%)CLAMAV_DETECTION: 16 (4.0%)CVE_2017_8291: 11 (2.8%)
  • 160 (40.1%)
  • 73 (18.3%)
  • 37 (9.3%)
  • 30 (7.5%)
  • 19 (4.8%)
  • 19 (4.8%)
  • 18 (4.5%)
  • 16 (4.0%)
  • 16 (4.0%)
  • 11 (2.8%)

Microsoft Write

8 files
Clean 1
Suspicious 0
Malicious 7
Error 0

Most-triggered heuristics

SC_NOP_SLED: 7 (12.5%)WRI_OLE_WRAPPED: 7 (12.5%)SC_NOP_EQUIV_SLED: 6 (10.7%)SC_XOR_ENCODED: 6 (10.7%)EMBEDDED_OFFICE_CHILD_STATIC_TRIAGE: 6 (10.7%)OLE_SLACK_ANOMALY: 6 (10.7%)EXTRACTED_FILE_STATIC_TRIAGE: 6 (10.7%)SC_PEB_ACCESS: 5 (8.9%)OLE_RAW_SHELLCODE_PAYLOAD: 5 (8.9%)SC_GETPC_CALL: 2 (3.6%)
  • 7 (12.5%)
  • 7 (12.5%)
  • 6 (10.7%)
  • 6 (10.7%)
  • 6 (10.7%)
  • 6 (10.7%)
  • 6 (10.7%)
  • 5 (8.9%)
  • 5 (8.9%)
  • 2 (3.6%)

JPEG

31 files
Clean 25
Suspicious 0
Malicious 6
Error 0

Most-triggered heuristics

EMBEDDED_URL: 31 (68.9%)JPEG_CARRIER_EMBEDDED_ENCODED_PE: 6 (13.3%)EXTRACTED_FILE_CLAMAV: 6 (13.3%)EXTRACTED_FILE_STATIC_TRIAGE: 2 (4.4%)
  • 31 (68.9%)
  • 6 (13.3%)
  • 6 (13.3%)
  • 2 (4.4%)

Hangul (HWP)

4 files
Clean 1
Suspicious 0
Malicious 3
Error 0

Most-triggered heuristics

HWP_COMPRESSED: 4 (21.1%)CLAMAV_DETECTION: 3 (15.8%)EXTRACTED_FILE_CLAMAV: 3 (15.8%)EXTRACTED_FILE_STATIC_TRIAGE: 3 (15.8%)HWP_SHELL_CMD: 2 (10.5%)EMBEDDED_URL: 1 (5.3%)CVE_2013_0808: 1 (5.3%)HWP_POSTSCRIPT: 1 (5.3%)HWP_PS_FILE: 1 (5.3%)
  • 4 (21.1%)
  • 3 (15.8%)
  • 3 (15.8%)
  • 3 (15.8%)
  • 2 (10.5%)
  • 1 (5.3%)
  • 1 (5.3%)
  • 1 (5.3%)
  • 1 (5.3%)

Photoshop (PSD)

1 files
Clean 1
Suspicious 0
Malicious 0
Error 0

Most-triggered heuristics

  • 1 (100.0%)