Open-source atomic malware analysis

Analyze another

11-x64/Win11_25H2_English_x64_v2/sources/install.wim.d/4/Windows/WinSxS/amd64_microsoft-windows-s..tup-tool-powershell_31bf3856ad364e35_10.0.26100.6584_none_e1dc93565747836a/r

POWERSHELL
Verdict: HOSTILE
AI Obfuscated PowerShell module
Mal-ecule
O(As)Md
Size 192 B download
First seen 11 days ago
Analyzed 10 days ago
Ecosystem windows
Source microsoft.com
Many single-character variables: BitLocker.psm1:0x0
BitLocker.psm1 powershell
1 �W`JPA31���ޱ�p Many single-character variables
2 `} @�� � %(QxcVv�t�q!+�'�a�g��;1C�ҩ_�"� ���^֘/�6K�̷3P��@rY�y�c����f���j
3 ����������P�������������� y����������� Y4�>�8�zl �����������������

Objectives

Metadata

Identity

SHA-256 deb86a39bfe6a2641af32645317e99a6bc9972a387677aa0f3c32ecdb8f231bd
Filename BitLocker.psm1
Package 11-x64/Win11_25H2_English_x64_v2/sources/install.wim.d/4/Windows/WinSxS/amd64_microsoft-windows-s..tup-tool-powershell_31bf3856ad364e35_10.0.26100.6584_none_e1dc93565747836a/r

Origin

Source harvest
Feed osimage
Ecosystem windows
Domain microsoft.com

Timeline

First seen 3 Aug 2026 12:19 UTC
First analyzed 3 Aug 2026 12:39 UTC
Last analyzed 3 Aug 2026 23:34 UTC
Last updated 3 Aug 2026 23:34 UTC

Labeling

Label good
Label source harvest
Traits version 95b20