Local reference
Suspicious dependency
Inferred
Mal-ecule
O(Ca)H(U)
Objectives
notable severity, 90% confident.
credential-access/capture
Reads DOM credential field values
component severity, 75% confident.
lateral-movement/social-engineering
Inline password token in lure
component severity, 75% confident.
supply-chain/recon-exfil
HTTP upload request call token
Micro-behaviors
notable severity, 82% confident.
ui/window/manage
Password input form field
baseline severity, 90% confident.
communications/http
HTTP protocol prefix
component severity, 82% confident.
crypto/symmetric/aes
JavaScript static key string assignment
component severity, 84% confident.
data/text/keywords
password/token/api_key field keyword
component severity, 84% confident.
fs/path
Hidden directory path literal
Metadata
baseline severity, 100% confident.
lang
javascript code embedded in string
component severity, 90% confident.
file/text
File has 30 or more lines
Identity
| SHA-256 | ab55151153a1cdde043891fa6b1b383e9278bf47d3952de1545291fdceade0f0 |
|---|---|
| Filename | VirusShare_b19854fadf25a491d1cd14c0c42fe09e |
Origin
| Source | harvest |
|---|
Timeline
| First seen | 31 May 2026 22:41 UTC |
|---|---|
| First analyzed | 1 Jun 2026 21:36 UTC |
| Last analyzed | 1 Jun 2026 21:36 UTC |
| Last updated | 1 Jun 2026 21:36 UTC |
Labeling
| Label | bad |
|---|---|
| Label source | harvest |
| Traits version | ed903 |
Not seeing what you expected? Let us know