Open-source atomic malware analysis

Analyze another

191519

PE
Verdict: BENIGN
Mal-ecule
H(Cm)Md₂(Bi₂Si)
Size 57.5 KB download
First seen 49 days ago
Analyzed 40 days ago
Ecosystem datasets

Objectives

baseline severity, 100% confident.
anti-static/obfuscation WININET.DLL absent from PE import table

Micro-behaviors

notable severity, 94% confident.
communications/ip Multiple external IPv4 endpoints in rdata
baseline severity, 90% confident.
mem/c-runtime Free memory (C runtime)
baseline severity, 90% confident.
os/exception Virtual unwind stack frame

Metadata

notable severity, 95% confident.
binary PE checksum mismatch (modified binary)
notable severity, 70% confident.
binary/metrics Binary with very few exports (1-2)
notable severity, 100% confident.
signed Binary is not digitally signed
baseline severity, 90% confident.
binary/section PE .reloc section presence
baseline severity, 100% confident.
build PGO-trained release build (POGO)
baseline severity, 95% confident.
dylib::api-ms-win-core-errorhandling-l1-1-1 links api-ms-win-core-errorhandling-l1-1-1.dll (UnhandledExceptionFilter, SetUnhandledExceptionFilter)
baseline severity, 95% confident.
dylib::api-ms-win-core-libraryloader-l1-2-0 links api-ms-win-core-libraryloader-l1-2-0.dll (GetModuleHandleExW, LoadStringW)
baseline severity, 95% confident.
dylib::api-ms-win-core-processthreads-l1-1-2 links api-ms-win-core-processthreads-l1-1-2.dll (GetCurrentProcess, GetCurrentThreadId, GetCurrentProcessId, TerminateProcess)
baseline severity, 95% confident.
dylib::api-ms-win-core-profile-l1-1-0 links api-ms-win-core-profile-l1-1-0.dll (QueryPerformanceCounter)
baseline severity, 95% confident.
dylib::api-ms-win-core-synch-l1-2-0 links api-ms-win-core-synch-l1-2-0.dll (Sleep)
baseline severity, 95% confident.
dylib::api-ms-win-core-sysinfo-l1-2-1 links api-ms-win-core-sysinfo-l1-2-1.dll (GetSystemTimeAsFileTime, GetTickCount, GetTickCount64)
baseline severity, 95% confident.
dylib::api-ms-win-eventing-provider-l1-1-0 links api-ms-win-eventing-provider-l1-1-0.dll (EventRegister, EventUnregister, EventWrite)
baseline severity, 95% confident.
dylib::hid links HID.DLL (HidP_SetUsageValue, HidP_GetUsageValueArray, HidP_GetUsageValue, HidP_GetValueCaps, HidP_GetButtonCaps, ... +1 more)
baseline severity, 95% confident.
dylib::msvcrt links msvcrt.dll (memcpy, memcmp, wcscpy_s, C_specific_handler, initterm, ... +5 more)
baseline severity, 95% confident.
dylib::ntdll links ntdll.dll (DbgPrintEx, RtlCompareMemory, RtlLookupFunctionEntry, RtlCaptureContext, RtlInitUnicodeString, ... +1 more)
baseline severity, 100% confident.
hardening High-entropy ASLR (64-bit)

20 of 46 traits shown

Identity

SHA-256 2776d32ae6f108a24db5d3feebb8b6454c7d9a37e8e8e49b6fc80299ca85aadf
Filename 191519

Origin

Ecosystem datasets

Timeline

First seen 1 May 2026 09:46 UTC
Last analyzed 10 May 2026 22:28 UTC