sha256sum hatredv20160718iso Search the hash on (upload allowed only if you accept the privacy policy) or ThreatFox . Step 3 – Static Analysis (Without Mounting) Use binwalk or iso-info to list contents without executing:
iso-info -i hatredv20160718iso Look for suspicious file names: .exe in root, autorun.inf , payload.bin , installer.exe . On a Linux VM: hatredv20160718iso
| Type | Example | Legitimacy | |------|---------|-------------| | OS installer | Windows 10.iso | High if from Microsoft | | Game disc backup | Game_ISO | Medium – often pirated | | Live Linux environment | Ubuntu.iso | High if from official source | | Malware dropper | Crack.iso | Low – used to bypass antivirus | hatredv20160718iso