Local reference
Suspicious dependency
Inferred
Mal-ecule
O(Ca)H(U)
Objectives
notable severity, 90% confident.
credential-access/email/webmail
Reads DOM credential field values
component severity, 75% confident.
lateral-movement/social-engineering
Inline password token in lure
component severity, 75% confident.
supply-chain/recon-exfil
HTTP upload request call token
Micro-behaviors
notable severity, 82% confident.
ui/window/manage
Password input form field
baseline severity, 90% confident.
communications/http
HTTP protocol prefix
component severity, 82% confident.
crypto/symmetric/aes
JavaScript static key string assignment
component severity, 84% confident.
data/text/keywords
password/token/api_key field keyword
component severity, 84% confident.
fs/path
Hidden directory path literal
Metadata
baseline severity, 100% confident.
lang
javascript code embedded in string
component severity, 90% confident.
file/text
File has 30 or more lines
Identity
| SHA-256 | 058f68be81a524f113bfab27d947d446e3f04b49a15f18cb232ec8d768f12ab2 |
|---|---|
| Filename | VirusShare_0569541ad05d65394b8b5b72ab429b9e |
Origin
| Source | harvest |
|---|
Timeline
| First seen | 31 May 2026 22:40 UTC |
|---|---|
| First analyzed | 1 Jun 2026 19:16 UTC |
| Last analyzed | 1 Jun 2026 19:16 UTC |
| Last updated | 1 Jun 2026 19:16 UTC |
Labeling
| Label | bad |
|---|---|
| Label source | harvest |
| Traits version | 961ce |
Not seeing what you expected? Let us know