Open-source atomic malware analysis

Analyze another

21624

PE
Verdict: BENIGN
Mal-ecule
H(Cm)Md₂(Bi₂Si)
Size 30.0 KB download
First seen 49 days ago
Analyzed 39 days ago

Objectives

baseline severity, 100% confident.
anti-static/obfuscation WININET.DLL absent from PE import table
component severity, 100% confident.
anti-static/obfuscation/binary-metrics Binary has normal code entropy (>5.5)
component severity, 100% confident.
command-and-control/dropper/staging Binary contains high-entropy data regions
component severity, 97% confident.
evasion/masquerade/version-resource PE has no Authenticode signature
component severity, 100% confident.
evasion/process/injection Lacks substantial data section

Micro-behaviors

notable severity, 100% confident.
communications/ipc Uses named pipe IPC APIs
baseline severity, 90% confident.
fs/file Move or rename file
baseline severity, 90% confident.
fs/path Canonicalize Windows 8.3 short path
baseline severity, 90% confident.
mem/protect Allocate virtual memory
baseline severity, 90% confident.
os/module Resolve exports with GetProcAddress
baseline severity, 70% confident.
os/sysinfo Read startup info via GetStartupInfoA
baseline severity, 82% confident.
process/info Query current process command line
baseline severity, 90% confident.
process/sync Initialize critical section
baseline severity, 90% confident.
process/terminate Exit current process

Metadata

notable severity, 70% confident.
binary/anomaly PE has multiple BSS-style sections
notable severity, 80% confident.
binary/metrics Dense PE import table references
notable severity, 100% confident.
signed Binary is not digitally signed
baseline severity, 80% confident.
binary Tiny resource section (no version/icon)
baseline severity, 95% confident.
dylib::kernel32 links kernel32.dll (GetShortPathNameA, UTUnRegister, FreeConsole, GetProcAddress, MoveFileA, ... +9 more)
baseline severity, 100% confident.
hardening NO_SEH (SafeSEH not used)

20 of 32 traits shown

Identity

SHA-256 0a88ab47bcbe03f069c48d07f275315d2b75b64e09f2904f9b54e318e5bae38a
Filename 21624

Origin

Ecosystem pe-machine-learning-dataset

Timeline

First seen 1 May 2026 09:46 UTC
Last analyzed 11 May 2026 12:50 UTC