Open-source atomic malware analysis

Analyze another

59cea3baa53034b4e41b5fe9e303ad282437d36ef077dff58ae679685dd09811.exe

PE
Verdict: BENIGN
Mal-ecule
H(Os)Md(Bi)
Size 159.8 KB download
First seen 111 days ago
Analyzed 93 days ago

Objectives

component severity, 70% confident.
anti-static/obfuscation/payload HKCU\Software path string
component severity, 100% confident.
command-and-control/dropper/execution Borland Delphi RTL registry key string
component severity, 95% confident.
evasion/indicator-removal Regex component marker
component severity, 85% confident.
evasion/masquerade PE lacks VS_VERSION_INFO resource
component severity, 95% confident.
evasion/masquerade/file Filename has EXE extension
component severity, 86% confident.
exfiltration/messaging Notification config wording

Micro-behaviors

notable severity, 90% confident.
os/sysinfo Query disk free space
component severity, 80% confident.
communications/http/client Regex component marker
component severity, 78% confident.
data/embedded/payload .NET resource manager reference
component severity, 90% confident.
os/api-resolution Kernel32 DLL resolution string

Metadata

notable severity, 85% confident.
binary/metrics PE with malformed section layout
baseline severity, 92% confident.
binary UHARC linker major version
component severity, 80% confident.
binary/anomaly CompanyName field absent from PE version info
component severity, 90% confident.
binary/section Tiny C string section ratio

Identity

SHA-256 59cea3baa53034b4e41b5fe9e303ad282437d36ef077dff58ae679685dd09811
Filename 59cea3baa53034b4e41b5fe9e303ad282437d36ef077dff58ae679685dd09811.exe

Origin

Source harvest

Timeline

First seen 13 May 2026 19:15 UTC
First analyzed 31 May 2026 12:05 UTC
Last analyzed 31 May 2026 12:05 UTC
Last updated 31 May 2026 12:05 UTC

Labeling

Label bad
Label source harvest
Traits version 176d6