QuirkyLoader
- First seen
- 2022-04-15 00:00:00
- Malware type
- loader
- Last IoC activity
- 2026-07-05 16:25:05
- Profile updated
- 2026-07-07 15:17:07
Targeted industries: financial-services technology-and-telecommunications
Context
According to X-Force, this is a loader module written in .NET languages for which ahead-of-time (AOT) compilation is used.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Quirkyloader_Auto (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Quirkyloader (report)
- ibm.com — Ibm X Force Threat Analysis Quirkyloader (report)