Open-source atomic malware analysis

Analyze another

df56b2796d6a3dc1cb0dd449bde500ee024aba2cba51aec803f1d14672c2e6ce.bat

BATCH
Verdict: HOSTILE
Mal-ecule
O(As₂)H(Po)Md
Size 278.0 KB download
First seen 93 days ago
Analyzed 77 days ago

Objectives

suspicious severity, 97% confident.
anti-static/obfuscation/string Batch fragmentation and junk-padding profile
baseline severity, 85% confident.
anti-static/obfuscation/code-metrics Multiple long lines (>1000 chars)
component severity, 95% confident.
command-and-control/dropper/execution Regex component marker
component severity, 90% confident.
command-and-control/dropper/staging Batch has long encoded token
component severity, 88% confident.
execution/interpreter/script Short ExecutionPolicy bypass flag
component severity, 85% confident.
impact/degrade/edr Regex component marker
component severity, 100% confident.
impact/ransom Start launcher per host

Micro-behaviors

suspicious severity, 82% confident.
process/create Windows start minimized flag

Metadata

notable severity, 90% confident.
encoded-payload Encoded payload detected: base64
component severity, 90% confident.
file/text Very long line

Identity

SHA-256 df56b2796d6a3dc1cb0dd449bde500ee024aba2cba51aec803f1d14672c2e6ce
Filename df56b2796d6a3dc1cb0dd449bde500ee024aba2cba51aec803f1d14672c2e6ce.bat

Origin

Source harvest

Timeline

First seen 15 May 2026 12:15 UTC
First analyzed 31 May 2026 02:50 UTC
Last analyzed 31 May 2026 02:50 UTC
Last updated 31 May 2026 02:50 UTC

Labeling

Label bad
Label source harvest
Traits version 52045