Open-source atomic malware analysis

Analyze another

s2.py

PYTHON
Verdict: HOSTILE
Mal-ecule
O₄(I₂As₄CS)H₂(CrF)Md(Pt)
Size 676 B download
First seen 118 days ago
Analyzed 116 days ago
Ecosystem malcontent-samples

Objectives

hostile severity, 95% confident.
impact/ransom Python file encryption overwrite workflow
hostile severity, 97% confident.
impact/wipe Fernet key generation combined with in-place encryption (wiper)
notable severity, 78% confident.
anti-static/obfuscation Near-zero comment ratio in small Python file
component severity, 95% confident.
anti-static/obfuscation/payload Python source extension basename
component severity, 100% confident.
command-and-control/dropper open() function call

Micro-behaviors

notable severity, 90% confident.
crypto/symmetric Fernet encryption operation
notable severity, 85% confident.
fs/file In-place binary file modification
baseline severity, 85% confident.
fs/directory Directory traversal operation
baseline severity, 80% confident.
process/create Command injection characters in config-like strings

Metadata

component severity, 95% confident.
lang Few generated table functions

Identity

SHA-256 8c914dfa5cb7fd25d87ee802a48e8e63c090ceb400f0fd3cd0bf605bba36a4bd
Filename s2.py

Origin

Source harvest
Feed datasets
Ecosystem malcontent-samples

Timeline

First seen 24 Apr 2026 16:18 UTC
Last analyzed 26 Apr 2026 15:30 UTC
Last updated 26 Apr 2026 15:30 UTC

Labeling

Label bad
Label source harvest
Traits version bf48d