Open-source atomic malware analysis

Analyze another

77074ed53a393fe48c3bff02abf07138c8a981e8689ad6b32ccd23e6bbc251d2.vbs

VBS
Verdict: HOSTILE
Mal-ecule
O(As₂)H(Po)Md
Size 1.3 MB download
First seen 94 days ago
Analyzed 78 days ago

Objectives

suspicious severity, 80% confident.
anti-static/obfuscation/payload Many extremely long lines
suspicious severity, 85% confident.
anti-static/obfuscation/string PowerShell or VBScript line bloat
baseline severity, 70% confident.
anti-static/obfuscation/code-metrics Very low whitespace ratio (minified/compressed)
component severity, 80% confident.
anti-static/obfuscation/control-flow Code string replacement loop
component severity, 82% confident.
evasion/anti-av PowerShell char arithmetic

Micro-behaviors

notable severity, 88% confident.
process/create/macro Shell or CreateObject invocation
component severity, 90% confident.
data/text/security Primary advisory source names
component severity, 80% confident.
fs/path/sensitive Keystore file suffix
component severity, 100% confident.
fs/write Binary stream type assignment
component severity, 84% confident.
ui ANSI terminal erase operation

Metadata

notable severity, 90% confident.
encoded-payload Encoded payload detected: xor
component severity, 90% confident.
file/text Very long line

Identity

SHA-256 77074ed53a393fe48c3bff02abf07138c8a981e8689ad6b32ccd23e6bbc251d2
Filename 77074ed53a393fe48c3bff02abf07138c8a981e8689ad6b32ccd23e6bbc251d2.vbs

Origin

Source harvest

Timeline

First seen 15 May 2026 12:02 UTC
First analyzed 31 May 2026 07:34 UTC
Last analyzed 31 May 2026 07:34 UTC
Last updated 31 May 2026 07:34 UTC

Labeling

Label bad
Label source harvest
Traits version 52045