Safe
Lua script flagged by zero engines across 76 antivirus products; universal clean consensus with no malicious behaviour or external-intelligence hits.
7885ae3a6e9ec0adfe…209dcd483fThe verdict, reasoned out.
Not a rules engine. The MT AI Engine reads every signal we collected, weighs them against history, and commits to an answer.
This Lua script has achieved universal clean consensus across our antivirus network. Eighteen tier-1 engines (the highest-trust vendors) all report it undetected, with zero malicious or suspicious flags across the entire 76-engine panel. The file's medium prevalence (15 submitters, 17 submissions) is consistent with benign shared code circulating in developer communities. No sandbox execution data shows malicious behaviour, no dropped children or malicious host contacts were observed, and external-intelligence sources (CIRCL, YARAify, MalwareBazaar) returned no hits. The unsigned status and file-type metadata confusion (named .lua but tagged CSV) do not override the overwhelming clean signal.
Each signal cites a concrete token from the evidence the arbiter saw — engine name, MITRE technique, signer string, or an exact count.
engines.tier1Malicious=0, tier1ReportedClean=18 (Avast, BitDefender, Kaspersky, Microsoft, ESET, Fortinet, Ikarus, McAfee, DrWeb, Emsisoft, F-Secure, GData, Avira, AVG all undetected)
engines.malicious=0, suspicious=0 across all 76 engines; reporting=61/76 — universal clean verdict
signing.verified=false, unsigned file — no signer risk; no signerStats history to contradict
behaviour=null, droppedChildren=null, contactedHosts=null, externalIntel all negative (CIRCL, YARAify, MalwareBazaar) — no runtime or external malice signals
prevalence.classification='medium' (15 submitters, 17 submissions) — consistent with benign shared utility, not rare or novel
- 18/18 tier-1 engines undetected (Kaspersky, Microsoft, BitDefender, ESET, Fortinet, Ikarus, McAfee, DrWeb, Emsisoft, F-Secure, GData, Avira, AVG, Avast)
- 0/76 engines flagged malicious or suspicious
- No sandbox malicious verdict, no dropped children, no malicious host contacts
- No external-intelligence hits (CIRCL, YARAify, MalwareBazaar all negative)
- Medium prevalence (15 submitters, 17 submissions) consistent with benign shared utility
This file is safe. No further action is needed. If you received a security alert for this hash, it was likely a false positive or metadata-handling artifact.
0 detections across 76 engines
How often this file shows up in the wild
Moderate prevalence — neither rare nor common. No strong prior applies.
Forensic fingerprint
- File name
- 271590.lua
- Size
- 833 B
- MIME type
- (unknown)
- Detected type
- CSV
- SHA-256
- 7885ae3a6e9ec0adfe4ef57a376bc55e0da7fae48b52260ef24438209dcd483f
- MD5
- 4364535d650ba3a23a2980757723c952
- SHA-1
- a4b2572181deae1f510369c50753be966e0263c5
- First seen (VT)
- 3/6/2025, 7:31:38 AM
- Last analysis (VT)
- 3/6/2025, 7:31:38 AM
- First scan (MalwareTips)
- 6/25/2026, 8:11:35 AM
- Last scan (MalwareTips)
- 6/25/2026, 8:11:35 AM
Reviews & malware reports(0)
Tell the community what you saw. Tag the sample — Trojan, Adware, False Positive — and share what the file did on your system. Your report helps confirm or dispute the AV verdict.