Open-source atomic malware analysis

Analyze another

aba6883fb8890f9b9eb53333694b862aecadcd6199489d23b2b03f23ea4fc582.dll

PE
Verdict: BENIGN
Mal-ecule
O(As)H(Ds)
Size 204.0 KB download
First seen 91 days ago
Analyzed 73 days ago

Objectives

suspicious severity, 75% confident.
anti-static/obfuscation/payload Minimal PE imports with dynamic loading
baseline severity, 85% confident.
evasion/masquerade/dll DLL filename extension present
component severity, 100% confident.
anti-static/obfuscation/binary-metrics Binary has normal code entropy (>5.5)
component severity, 100% confident.
anti-static/obfuscation/reflection LoadLibrary symbol

Micro-behaviors

notable severity, 95% confident.
dylib/load Dynamic library loading via LoadLibraryA
baseline severity, 100% confident.
os/module Reference to GDI32.dll
baseline severity, 85% confident.
os/syscall Direct NT API access
baseline severity, 90% confident.
os/sysinfo/platform Query system default UI language
baseline severity, 90% confident.
process/create Close handle

Metadata

baseline severity, 100% confident.
binary PE has RT_ICON in resources list
baseline severity, 100% confident.
binary/metrics Binary has 1000 or more strings
baseline severity, 90% confident.
binary/section PE .reloc section presence
baseline severity, 100% confident.
build requestedExecutionLevel is asInvoker
baseline severity, 95% confident.
dylib::advapi32 links advapi32 (RegLoadAppKeyW, CloseEncryptedFileRaw)
baseline severity, 95% confident.
dylib::gdi32 links gdi32 (OffsetClipRgn)
baseline severity, 95% confident.
dylib::kernel32 links kernel32 (GetSystemDefaultUILanguage, CloseHandle, OutputDebugStringA, LoadLibraryA, LoadLibraryW, ... +1 more)
baseline severity, 95% confident.
dylib::user32 links user32 (GetMenuState, EnumDisplayDevicesW, TranslateMessage, DragDetect)
baseline severity, 95% confident.
dylib::wintrust links wintrust (CryptCATAdminCalcHashFromFileHandle)
baseline severity, 100% confident.
hardening ASLR enabled (DYNAMIC_BASE)
baseline severity, 70% confident.
package PE FileDescription metadata field

20 of 35 traits shown

Identity

SHA-256 aba6883fb8890f9b9eb53333694b862aecadcd6199489d23b2b03f23ea4fc582
Filename aba6883fb8890f9b9eb53333694b862aecadcd6199489d23b2b03f23ea4fc582.dll

Origin

Source harvest

Timeline

First seen 12 May 2026 19:33 UTC
First analyzed 30 May 2026 12:33 UTC
Last analyzed 30 May 2026 12:33 UTC
Last updated 30 May 2026 12:33 UTC

Labeling

Label bad
Label source harvest
Traits version ca5ef