Open-source atomic malware analysis

Analyze another

f022eb855dd9a7d5780b43a89b70e590e50d30bb93a5fc13ab54c090180cfe84.exe

PE
Verdict: BENIGN
Mal-ecule
H(Os)Md(Bi)
Size 398.1 KB download
First seen 111 days ago
Analyzed 94 days ago

Objectives

component severity, 85% confident.
anti-static/obfuscation/payload Registry value named "scode"
component severity, 86% confident.
anti-static/obfuscation/string Long mixed-case identifiers cluster
component severity, 82% confident.
command-and-control/dropper/staging .NET StringBuilder Append use
component severity, 95% confident.
evasion/indicator-removal Regex component marker
component severity, 85% confident.
evasion/masquerade PE lacks VS_VERSION_INFO resource
component severity, 95% confident.
evasion/masquerade/file Filename has EXE extension
component severity, 80% confident.
execution/interpreter/script String.fromCharCode fragment (CharCode)

Micro-behaviors

notable severity, 90% confident.
os/sysinfo Query disk free space
component severity, 80% confident.
communications/http/client Regex component marker
component severity, 90% confident.
os/api-resolution Kernel32 DLL resolution string
component severity, 82% confident.
process/enumerate GetModuleFileNameExA dynamic resolve

Metadata

notable severity, 85% confident.
binary/metrics PE with malformed section layout
component severity, 100% confident.
binary File is a compiled binary
component severity, 80% confident.
binary/anomaly CompanyName field absent from PE version info
component severity, 90% confident.
binary/section Tiny C string section ratio

Identity

SHA-256 f022eb855dd9a7d5780b43a89b70e590e50d30bb93a5fc13ab54c090180cfe84
Filename f022eb855dd9a7d5780b43a89b70e590e50d30bb93a5fc13ab54c090180cfe84.exe

Origin

Source harvest

Timeline

First seen 14 May 2026 06:48 UTC
First analyzed 30 May 2026 22:52 UTC
Last analyzed 30 May 2026 22:52 UTC
Last updated 30 May 2026 22:52 UTC

Labeling

Label bad
Label source harvest
Traits version 52045