Open-source atomic malware analysis

Analyze another

libxml2mod.pyd

PE
Verdict: BENIGN
Mal-ecule
H(Cm)Md₂(Bi₂Si)
Size 392.5 KB download
First seen 58 days ago
Analyzed 42 days ago
Ecosystem datasets

Micro-behaviors

notable severity, 94% confident.
communications/ip Multiple external IPv4 endpoints in rdata
baseline severity, 95% confident.
mem/protect Modify memory page protection
baseline severity, 92% confident.
os/module Dynamically resolve own modules and exports

Metadata

notable severity, 100% confident.
binary PE binary has trailing overlay data
notable severity, 80% confident.
binary/metrics Dense PE import table references
notable severity, 100% confident.
signed Binary is not digitally signed
baseline severity, 95% confident.
dylib::api-ms-win-crt-convert-l1-1-0 links api-ms-win-crt-convert-l1-1-0.dll (mbrtowc, wcrtomb)
baseline severity, 95% confident.
dylib::api-ms-win-crt-filesystem-l1-1-0 links api-ms-win-crt-filesystem-l1-1-0.dll (lock_file, unlock_file)
baseline severity, 95% confident.
dylib::api-ms-win-crt-heap-l1-1-0 links api-ms-win-crt-heap-l1-1-0.dll (calloc, free, malloc)
baseline severity, 95% confident.
dylib::api-ms-win-crt-locale-l1-1-0 links api-ms-win-crt-locale-l1-1-0.dll (localeconv)
baseline severity, 95% confident.
dylib::api-ms-win-crt-math-l1-1-0 links api-ms-win-crt-math-l1-1-0.dll (fdopen)
baseline severity, 95% confident.
dylib::api-ms-win-crt-private-l1-1-0 links api-ms-win-crt-private-l1-1-0.dll (memcpy)
baseline severity, 95% confident.
dylib::api-ms-win-crt-runtime-l1-1-0 links api-ms-win-crt-runtime-l1-1-0.dll (assert, errno, execute_onexit_table, exit, initialize_onexit_table, ... +5 more)
baseline severity, 95% confident.
dylib::api-ms-win-crt-stdio-l1-1-0 links api-ms-win-crt-stdio-l1-1-0.dll (acrt_iob_func, stdio_common_vfprintf, close, dup, get_osfhandle, ... +4 more)
baseline severity, 95% confident.
dylib::api-ms-win-crt-string-l1-1-0 links api-ms-win-crt-string-l1-1-0.dll (memset, strlen, strncmp, strnlen, wcslen, ... +1 more)
baseline severity, 95% confident.
dylib::api-ms-win-crt-utility-l1-1-0 links api-ms-win-crt-utility-l1-1-0.dll (rand_s)
baseline severity, 95% confident.
dylib::kernel32 links KERNEL32.dll (DeleteCriticalSection, EnterCriticalSection, FreeLibrary, GetCurrentProcess, GetLastError, ... +10 more)
baseline severity, 95% confident.
dylib::libpython3/12 links libpython3.12.dll (PyBool_Type, PyBytes_AsString, PyBytes_Size, PyCallable_Check, PyCapsule_GetName, ... +45 more)
baseline severity, 95% confident.
dylib::libxml2-2 links libxml2-2.dll (DllMain, htmlAutoCloseTag, htmlCreateFileParserCtxt, htmlCreateMemoryParserCtxt, htmlCreatePushParserCtxt, ... +869 more)
baseline severity, 100% confident.
hardening High-entropy ASLR (64-bit)

20 of 62 traits shown

Identity

SHA-256 03efcac67aa9f660385156ccb668547655af1bed88e940f6f535a1b884bb13e7
Filename libxml2mod.pyd

Origin

Ecosystem datasets

Timeline

First seen 24 Apr 2026 16:15 UTC
Last analyzed 10 May 2026 14:04 UTC