Suspicious
Suspect

60fbe610b13e76b4cd6154e9c0ae92ab

PE Executable
MD5: 60fbe610b13e76b4cd6154e9c0ae92ab
Size: 701.95 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 60fbe610b13e76b4cd6154e9c0ae92ab
Sha1 5a3b715f5c3b69c9a19f8caed1355b1f98474ab7
Sha256 d6d543741f22a6a4ccc7c66a73ddacbe7918818dd0717f004c3216e180e4da99
Sha384 a75c32fd162cecb44f98226ec6d105f385fb13466e63c9f513f95d0813af5cb3173d4c9dc58161971972438d43656046
Sha512 2fbf9a3e93b320437045d012e3ad91633b2f7fb1891ed67abc9c46f81a0027d1b1e81a0f2ebf3ca8d0ad75cb0211d427f86077c80bc6bf6498c131d6aaa23c3f
SSDeep 12288:I2oi0i37p+heRCmIQM1/3SFNBkEW5Q/WAzDqhrItX7PADS35M0O0OW:Zo9i8heRYxJSF7tb/FmFIx7PA+35
TLSH B4E41268135ACA03D6F11B7568A1D3B427B85FA9F811E3028FCEBCFB792579074147A2
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuApp.Forms.PuzzleGridForm.resources
SudokuApp.Properties.Resources.resources
FOQP
[NBF]root.Data
[NBF]root.Data-preview.png
KS
[NBF]root.Data
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: dWFa.pdb
Module Name
dWFa.exe
Full Name
dWFa.exe
EntryPoint
System.Void SudokuApp.Program::Main()
Scope Name
dWFa.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
dWFa
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
143
Main Method
System.Void SudokuApp.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void SudokuApp.Forms.PuzzleGridForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuApp.Forms.PuzzleGridForm.resources
SudokuApp.Properties.Resources.resources
FOQP
[NBF]root.Data
[NBF]root.Data-preview.png
KS
[NBF]root.Data
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙