Local reference
Suspicious dependency
Inferred
Mal-ecule
H(Po)Md₂(BiSi₂)
Micro-behaviors
notable severity, 86% confident.
process/tty
winpty DLL filename
component severity, 80% confident.
communications/http/client
Regex component marker
Metadata
notable severity, 100% confident.
binary
PE binary has trailing overlay data
notable severity, 100% confident.
signed
Authenticode chain CN: Microsoft Windows
baseline severity, 90% confident.
package
PE version resource metadata
component severity, 70% confident.
binary/metrics
.NET code entropy in unpacked range
Identity
| SHA-256 | 4b54cee8f8b2575cee216504872b9849201aea876327300a57d34f089ecdcd57 |
|---|---|
| Filename | 4b54cee8f8b2575cee216504872b9849201aea876327300a57d34f089ecdcd57.exe |
Origin
| Source | harvest |
|---|
Timeline
| First seen | 12 May 2026 19:22 UTC |
|---|---|
| First analyzed | 13 May 2026 04:20 UTC |
| Last analyzed | 14 Jun 2026 23:03 UTC |
| Last updated | 14 Jun 2026 23:03 UTC |
Labeling
| Label | bad |
|---|---|
| Label source | harvest |
| Traits version | 061e3 |
Not seeing what you expected? Let us know