Suspicious
Suspect

PE Executable
MD5: 32e3fd3b179b52dc87e228fd6bd3f4f4
Size: 738.82 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 32e3fd3b179b52dc87e228fd6bd3f4f4
Sha1 cbdde586a8df6697c5008741905fc833c082b498
Sha256 240813e71ac58f771ec0c63af47acc02ba25d77f32326b121d876ffb751b9e63
Sha384 9fbd269ef8f1fddf59f58729491a666cdf74723cf7bb8321c18fdc3077130b47006607324629a9b7f5b727691977c09c
Sha512 599e97173269a42a022522da62e19d12944b2596980f48d4bfab2e4cb3b2b010554c85d884acbf4dbd3d21b7e514b9a4667beb9247207f1a478c8605c0ee4a46
SSDeep 12288:0n+Fv0OW+gtIp3p1JwdcwKooi/U6kI6A8fyaMebCzGUOIdGApGkSzqX5:A+VgOJScwmi/lGyfmCzGUxEbqX5
TLSH 75F412582787DD07C4A14BB56CE1E37403B86EA97810F3428FDAECFB7D2674568807A6
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuApp.Forms.PuzzleGridForm.resources
SudokuApp.Properties.Resources.resources
KS
[NBF]root.Data
jYbV
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: HvBf.pdb
Module Name
HvBf.exe
Full Name
HvBf.exe
EntryPoint
System.Void SudokuApp.Program::Main()
Scope Name
HvBf.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
HvBf
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
143
Main Method
System.Void SudokuApp.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void SudokuApp.Forms.PuzzleGridForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuApp.Forms.PuzzleGridForm.resources
SudokuApp.Properties.Resources.resources
KS
[NBF]root.Data
jYbV
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙