Suspicious
Suspect

4107da7ebfb653e98052da58f3b1a07f

PE Executable
MD5: 4107da7ebfb653e98052da58f3b1a07f
Size: 770.56 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 4107da7ebfb653e98052da58f3b1a07f
Sha1 65546d4f569532af1d960c09398fc66357f19424
Sha256 fc500e76a991eda568ba5ea924902b8d9eb35648200ce41bce7a01f4a3c817e7
Sha384 2fceb2d43454f16b811540e994f1dfb153bc06ebe93e0f94140bc12706706f8544d08859c049c15d6590c5553f3aa783
Sha512 5549bc0c93609a04bf072782fa0a9f41abff03864d36bea703ea55c0d171eea764faf0dd509c3fc13197a7f46692e2e0df368405632e6a0b7d3ad072acd8f10d
SSDeep 12288:UvtxsVISp4a09+EtWodUs2IE8BMqrF0jPvvn4at2TNOD0ou6chugR:eSp+ZEqlriTvPt2gD02Ou
TLSH CEF41298074AEE06D4A11B7C1871E3F053B55E89A920D3078AFE7DEBFD6A75924803D3
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
TetrisLite.Formularios.MenuPrincipal.resources
TetrisLite.Properties.Resources.resources
RH1
[NBF]root.Data
jPEL
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: tXty.pdb
Module Name
tXty.exe
Full Name
tXty.exe
EntryPoint
System.Void TetrisLite.Program::Main()
Scope Name
tXty.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
tXty
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
79
Main Method
System.Void TetrisLite.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void TetrisLite.Formularios.MenuPrincipal::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
TetrisLite.Formularios.MenuPrincipal.resources
TetrisLite.Properties.Resources.resources
RH1
[NBF]root.Data
jPEL
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙