Open-source atomic malware analysis

Analyze another

8314f8fcca87ea80ce9fdf356d1ab107824445805fd0586bb372d65a46068385.exe

PE
Verdict: BENIGN
Mal-ecule
H(Os)Md(Bi)
Size 288.5 KB download
First seen 111 days ago
Analyzed 101 days ago

Objectives

baseline severity, 80% confident.
anti-static/obfuscation Executable section with very low entropy
baseline severity, 75% confident.
anti-static/obfuscation/payload Minimal PE imports with dynamic loading

Micro-behaviors

notable severity, 93% confident.
os/service Program can open Windows services
baseline severity, 90% confident.
dylib Windows GetProcAddress API string
baseline severity, 80% confident.
fs Resolve special folder path via Shell32
baseline severity, 95% confident.
mem/protect Modify memory page protection
baseline severity, 78% confident.
os/com Initialize COM subsystem
baseline severity, 100% confident.
os/module Reference to USER32.dll
baseline severity, 90% confident.
process/terminate Exit current process
baseline severity, 70% confident.
ui/window/manage Show or hide window

Metadata

notable severity, 85% confident.
binary/metrics High code section entropy
baseline severity, 80% confident.
binary Tiny resource section (no version/icon)
baseline severity, 95% confident.
binary/section UPX packed section name
baseline severity, 95% confident.
dylib::advapi32 links advapi32 (OpenServiceW)
baseline severity, 95% confident.
dylib::kernel32 links kernel32 (LoadLibraryA, ExitProcess, GetProcAddress, VirtualProtect)
baseline severity, 95% confident.
dylib::netapi32 links netapi32 (NetShareEnum)
baseline severity, 95% confident.
dylib::ole32 links ole32 (CoInitialize)
baseline severity, 95% confident.
dylib::shell32 links shell32 (SHGetFolderPathW)
baseline severity, 95% confident.
dylib::user32 links user32 (ShowWindow)
baseline severity, 100% confident.
hardening High-entropy ASLR (64-bit)

20 of 34 traits shown

Identity

SHA-256 8314f8fcca87ea80ce9fdf356d1ab107824445805fd0586bb372d65a46068385
Filename 8314f8fcca87ea80ce9fdf356d1ab107824445805fd0586bb372d65a46068385.exe

Origin

Source harvest

Timeline

First seen 14 May 2026 21:45 UTC
First analyzed 25 May 2026 00:16 UTC
Last analyzed 25 May 2026 00:16 UTC
Last updated 26 May 2026 01:12 UTC

Labeling

Label bad
Label source harvest
Traits version 9ea7c