Suspicious
Suspect

PE Executable
MD5: a8e564cfd53eef5f5e6a4ca91585c389
Size: 765.95 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Medium
MD5 a8e564cfd53eef5f5e6a4ca91585c389
Sha1 c50e60e6391d79fa02236cb60554de31feabe3b9
Sha256 75729672a86bdef9d1dbd8c43b732eb21a544b4923fe5cbacbb67e7110aa0027
Sha384 d2b7ad293f7c6e6ad0cf416960264a1e78b0043ee62027716347ffa048a87527e812c9c41cd8add272700205d34b45b2
Sha512 d4154ff24e73d7f7edb948be67cf7f3b129c9241094f038b368eb31094342928e6d19a342861ce7497e6440f7f1a974aef17c353cc3c4a7f643b04a4d2f2fb94
SSDeep 12288:JoAsBA1/eXyrk+OphP3euZsiXkZUYi7uk5U0E3a+yl5nAFdkeE1NGu3a+2:CAYImX6QD3eue+/+0EK4+x
TLSH 35F412553346E912E8A21FF00971E3B41778BD8DAD61D3071EFEADEF7836720A958281
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuGen.Form1.resources
SudokuGen.Properties.Resources.resources
IO
[NBF]root.Data
yKpW
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: SbRD.pdb
Module Name
SbRD.exe
Full Name
SbRD.exe
EntryPoint
System.Void SudokuGen.Program::Main()
Scope Name
SbRD.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
SbRD
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
145
Main Method
System.Void SudokuGen.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void SudokuGen.Form1::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SudokuGen.Form1.resources
SudokuGen.Properties.Resources.resources
IO
[NBF]root.Data
yKpW
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙