Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    The most durable USB-C cable I’ve tested so far is only $11 this weekend (and I’ll be buying several)

    November 30, 2025

    Finally, an Android tablet that I wouldn’t mind keeping my iPad Pro for (especially at this price)

    November 30, 2025

    How much RAM will your PC really need in 2025? A Windows and Mac expert’s view

    November 30, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Virustotal finds hidden malware fishing campaign in SVG files
    Security

    Virustotal finds hidden malware fishing campaign in SVG files

    PineapplesUpdateBy PineapplesUpdateSeptember 6, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Virustotal finds hidden malware fishing campaign in SVG files
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Virustotal finds hidden malware fishing campaign in SVG files

    Virustotal has discovered a phishing campaign hidden in SVG files that create portals assuring portals implementing Colombia that distribute malware.

    Virustotal discovered this campaign, as he added support on his AI code Insight platform for SVGS.

    AI code of Virustotal has been uploaded by file samples using machine learning to generate summary of suspected or malicious behavior found in insight feature files.

    After adding support to SVGS, Virustotal received a SVG file, which had zero detections by antivirus scan, but whose AI-operated code Insight feature detected using a JavaScript to display HTML, applied a portal to Colombia’s government judiciary system.

    Virustotal Code Insights to detect a malicious SVG file
    Virustotal Code Insights to detect a malicious SVG file
    Source: Virustotal

    SVG, or scalable vector graphics, are used in the file to generate lines, shapes and images of lessons through mathematical formulas in the file.

    However, the danger actors have started rapidly using SVG files in danger, as they can also be used using HTML. Execute the element and JavaScript when the graphic load.

    In the campaign discovered by Virustotal, SVG image files are used to render fake portals that display a foney download progress bar, eventually motivating the user to download the password-reserved zip collection (((((WirstotalThe password of this file is displayed in the fake portal page.

    “As shown in the screenshot below, the fake portal is described absolutely, following an official official government document download process,” Grewlosketl explains.

    “Fishing site includes case numbers, safety tokens and visual signs to create a trust, all of which are prepared within an SVG file.”

    Fake portal for Judicial System of Colombia
    Fake portal for Judicial System of Colombia
    Source: Virustotal

    Bleepingcomputer found that the extracted file has four files: a valid execution from Komodo Dragon web browser, which is named to an official judicial document, a malicious DLL (Wirstotal), And which appear to be two encrypted files.

    Facified password-protected collection
    Facified password-protected collection
    Source: Bleepingcomputer

    If the user opens the executable, the malicious DLL will be sideloaded to install further malware on the system.

    After detection of this initial SVG, Vishaltal identified 523, which was already uploaded by SVG files that were part of the same campaign, but were detected by security software.

    The AI ​​code was important in highlighting this particular campaign in addition to SVG support for Insights, as Grewstal said that the use of AI makes it easier to identify new malicious campaigns.

    “This is where the code insight helps the most: reference, saving time, and to help focus on what really matters. It is not magic, and it will not replace the expert analysis, but it is another tool to cut through noise and reach the point rapidly,” is the conclusion of Gurstal.


    Picus Blue Report 2025

    The passwords broke in 46% of the atmosphere, almost doubled by 25% last year.

    Picus Blue Report 2025 Now get a wider look at more conclusions on prevention, detection and data exfIs.

    Campaign files finds Fishing hidden Malware SVG Virustotal
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleCollege students can get Microsoft Copilot free for one year – how is here
    Next Article AI-in-operated malware hit 2,180 github accounts in the “S1ngularity” attack
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    Freddy’s Frozen Custard franchise files bankruptcy due to Chicago store losses

    November 24, 2025
    Startups

    Waiting on a large file transfer? How to Zip Files Like a Pro (and Save Time) in Windows 11

    November 24, 2025
    Startups

    Android and iPhone users can now share files more easily, but there’s a catch

    November 21, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    The most durable USB-C cable I’ve tested so far is only $11 this weekend (and I’ll be buying several)

    November 30, 2025

    Finally, an Android tablet that I wouldn’t mind keeping my iPad Pro for (especially at this price)

    November 30, 2025

    How much RAM will your PC really need in 2025? A Windows and Mac expert’s view

    November 30, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.