Open-source atomic malware analysis

Analyze another

03336e55e9bc4f0ae61098eeb358c36cf558683c457e7ccce374a61335df36d0.exe

PE
Verdict: BENIGN
Mal-ecule
H(Os)Md(Bi)
Size 2.3 MB download
First seen 106 days ago
Analyzed 100 days ago

Objectives

component severity, 100% confident.
anti-static/obfuscation/binary-metrics Binary is 1MB or larger
component severity, 99% confident.
anti-static/obfuscation/payload PE version resource text
component severity, 86% confident.
anti-static/obfuscation/string Long mixed-case identifiers cluster
component severity, 95% confident.
evasion/indicator-removal Regex component marker
component severity, 85% confident.
evasion/masquerade PE lacks VS_VERSION_INFO resource
component severity, 95% confident.
evasion/masquerade/file Filename has EXE extension
component severity, 88% confident.
persistence/login/scheduled-task Regex component marker

Micro-behaviors

notable severity, 90% confident.
os/registry Save registry hive to file
baseline severity, 90% confident.
communications/ip Encoded external IPv4 address
baseline severity, 80% confident.
data/encode/image Pixel operation symbols family A
baseline severity, 90% confident.
dylib Windows GetProcAddress API string
baseline severity, 74% confident.
ui/window/manage Create rectangular GDI region
component severity, 80% confident.
communications/http/client Regex component marker
component severity, 90% confident.
dylib/load Hidden LoadLibraryA string reference
component severity, 90% confident.
os/api-resolution Kernel32 DLL resolution string

Metadata

notable severity, 85% confident.
binary/metrics PE with malformed section layout
baseline severity, 88% confident.
lang/compiler Native runtime binary is large
component severity, 100% confident.
binary File is a compiled binary
component severity, 80% confident.
binary/anomaly CompanyName field absent from PE version info
component severity, 90% confident.
binary/section Tiny C string section ratio

20 of 21 traits shown

Identity

SHA-256 03336e55e9bc4f0ae61098eeb358c36cf558683c457e7ccce374a61335df36d0
Filename 03336e55e9bc4f0ae61098eeb358c36cf558683c457e7ccce374a61335df36d0.exe

Origin

Source harvest

Timeline

First seen 18 May 2026 10:56 UTC
First analyzed 24 May 2026 12:50 UTC
Last analyzed 24 May 2026 12:50 UTC
Last updated 26 May 2026 01:20 UTC

Labeling

Label bad
Label source harvest
Traits version 9ea7c