Autorunner malware family
Autorunner is a malware family tracked by MalwareAnalyzer by Cyble across 2 publicly analyzed samples. First seen 2026-07-29, most recently 2026-08-11. Observed ATT&CK techniques include T1056.001, T1057, T1112.
Corpus statistics
- Publicly analyzed samples: 2
- First seen: 2026-07-29
- Last seen: 2026-08-11
- Verdicts: malicious 2
- File types: pe 2
ATT&CK techniques used by Autorunner
Recent Autorunner samples
- virussign.com_0d579c974a7b0c0eab7974d9dc5fe8a0.vir - malicious (2026-08-11)
- 6f2439bc31e6c29a74f5ef42afe1f3b80f7efc7a243fe53ac860c051b98b070a - malicious (2026-07-29)
Frequently asked about Autorunner
- What is Autorunner?
- Autorunner is a malware family tracked by MalwareAnalyzer by Cyble across 2 publicly analyzed samples. First seen 2026-07-29, most recently 2026-08-11. Observed ATT&CK techniques include T1056.001, T1057, T1112.
- How many Autorunner samples have been analyzed?
- MalwareAnalyzer by Cyble holds 2 publicly analyzed samples attributed to Autorunner, first seen 2026-07-29 and most recently 2026-08-11. This counts public submissions to this platform only, so it is a measure of what we have seen rather than of the family's total prevalence.
- What MITRE ATT&CK techniques does Autorunner use?
- Across our Autorunner samples the most frequently observed techniques are T1056.001 (1), T1057 (1), T1112 (1). Counts are the number of analyzed samples in which each technique was observed.
- What file types does Autorunner use?
- Autorunner samples in this corpus are distributed as pe (2).
- Is Autorunner malicious?
- 2 of 2 analyzed Autorunner samples were scored malicious by the fused verdict, which combines multi-engine static scanning, YARA and hash reputation with behavior captured during real sandbox detonation. Each report lists every signal that contributed to its score.
Latest analyzed threats · ATT&CK coverage across the corpus · Threat trends