Open-source atomic malware analysis

Analyze another

9a030203fc54cd581bac4e730938f494b2f57ef1d7a0795c48874a480ec6eb27.exe

PE
Verdict: BENIGN
Mal-ecule
H(Os)Md(Bi)
Size 382.1 KB download
First seen 111 days ago
Analyzed 94 days ago

Objectives

component severity, 70% confident.
anti-static/obfuscation/payload HKCU\Software path string
component severity, 86% confident.
anti-static/obfuscation/string Long mixed-case identifiers cluster
component severity, 82% confident.
command-and-control/dropper/staging .NET StringBuilder Append use
component severity, 95% confident.
evasion/indicator-removal Regex component marker
component severity, 85% confident.
evasion/masquerade PE lacks VS_VERSION_INFO resource
component severity, 95% confident.
evasion/masquerade/file Filename has EXE extension
component severity, 80% confident.
execution/interpreter/script String.fromCharCode fragment (CharCode)
component severity, 88% confident.
persistence/login/scheduled-task Regex component marker

Micro-behaviors

notable severity, 90% confident.
os/sysinfo Query disk free space
component severity, 80% confident.
communications/http/client Regex component marker
component severity, 90% confident.
os/api-resolution Kernel32 DLL resolution string

Metadata

notable severity, 85% confident.
binary/metrics PE with malformed section layout
component severity, 100% confident.
binary File is a compiled binary
component severity, 80% confident.
binary/anomaly CompanyName field absent from PE version info
component severity, 90% confident.
binary/section Tiny C string section ratio

Identity

SHA-256 9a030203fc54cd581bac4e730938f494b2f57ef1d7a0795c48874a480ec6eb27
Filename 9a030203fc54cd581bac4e730938f494b2f57ef1d7a0795c48874a480ec6eb27.exe

Origin

Source harvest

Timeline

First seen 14 May 2026 06:53 UTC
First analyzed 31 May 2026 04:22 UTC
Last analyzed 31 May 2026 04:22 UTC
Last updated 31 May 2026 04:22 UTC

Labeling

Label bad
Label source harvest
Traits version 52045