The 1be9b626c1f8b66353717e18a12f77fcce0953e218a45d447d6ae7f0c4c11aa6 exe (Game Configuration C6lr) Digital Gaming Solutions File Malware Analysis
Gridinsoft Logo
File Icon

The 1be9b626c1f8b66353717e18a12f77fcce0953e218a45d447d6ae7f0c4c11aa6.exe (Game Configuration C6lr) File Analysis

Technical Analysis

File Name 1be9b626c1f8b66353717e18a12f77fcce0953e218a45d447d6ae7f0c4c11aa6.exe
File Type
PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
Scanner Version 1.0.218.174
Database Version 2025-06-15 12:00:21 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
45,391,416
File Size (bytes)
2025-06-15
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
676a64868ea011a2b3f174e31a875bce
SHA1
10797cf9733cb2941e92f4facd0faec9a969f945
SHA256
1be9b626c1f8b66353717e18a12f77fcce0953e218a45d447d6ae7f0c4c11aa6
SHA512
c6cb9ec3c459505b14820be3843059e85c1173b7cee4b43a496b97ab44fed816a1f1c68990162f47a35c6272df0abf706fa5e81421615ea14100ed4129da61c8
ImpHash
adccc51866f03809bfca28b15bc152ce

PE Analysis

Basic Information

Icon
Hash: cb4a47107f464facb0da3879b7301c6f
Fuzzy: c4b65cfe133b7f38b4cabb2bd4747c5a
dHash: 60e0b2aababec000
Image Base 0x140000000
Entry Point 0x1400013d0
Compilation Time 2025-06-08 19:24:27
Checksum 0x02b56355 (Actual: 0x02b520e0)
OS Version 4.0
PEiD Signatures PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
Digital Signature The expected hash does not match the digest in SpcInfo
Imports 21 libraries
Exports 0 functions
Resources 4 Resources
Sections 10 Sections

Version Information

LegalCopyright © Digital Gaming Solutions 2025. All rights reserved.
InternalName managerx86_241.exe
Charset 0409
FileVersion 1.34.0.96
ProductName Game Configuration C6lr
CompanyName Digital Gaming Solutions
CodePage 0409
FileFlagsEx 0x00000000
FileFlagsExMask 0x00000000
FileOS 0x00000004
FileSubtype 0x00000000
Type Application
FileFlags 0x00000000
OriginalFilename managerx86_241.exe
Language 0409
ProductVersion 1.34.0.96
FileDescription Game Configuration C6lr
Translation 0x0000 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 14,307,856 bytes 14,308,352 bytes 5.62 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 2318F7C593C2086A7BC1304F4FE5DE41
.data 0x00da7000 9,744 bytes 10,240 bytes 1.72 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 119D2EAC3530D170AE285357F4D39656
.rdata 0x00daa000 29,359,400 bytes 29,359,616 bytes 7.95 (Packed/Encrypted) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 64082C128FCD9FEB7A6E948AEB7E184B
.pdata 0x029aa000 946,596 bytes 946,688 bytes 6.73 (Compressed) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ FB8C71967C478654DE01E95E8BDC7E16
.xdata 0x02a92000 665,828 bytes 666,112 bytes 3.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 0AECEA4B230ADECD08FE0B4AC1209705
.bss 0x02b35000 1,440 bytes 0 bytes 0.00 (Normal) IMAGE_SCN_CNT_UNINITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE D41D8CD98F00B204E9800998ECF8427E
.idata 0x02b36000 16,608 bytes 16,896 bytes 4.71 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ ACA94133FA8FA3B1941E27C786B1FD8B
.tls 0x02b3b000 16 bytes 512 bytes 0.00 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE BF619EAC0CDF3F68D496EA9344137E8B
.rsrc 0x02b3c000 7,000 bytes 7,168 bytes 4.56 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ ED57DC89EAD6F01211495EC74988F57B
.reloc 0x02b3e000 68,712 bytes 69,120 bytes 5.49 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 056AD15C1F29450973C754EAF9C7CAD0
Entropy Analysis Alert

1 section(s) with high entropy (≥7.5) detected - possible packing/encryption

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 4 (6,687 bytes)
Resource Type Count Total Size Percentage
RT_ICON 1 4,264 bytes
63.8%
RT_GROUP_ICON 1 20 bytes
0.3%
RT_VERSION 1 1,296 bytes
19.4%
RT_MANIFEST 1 1,107 bytes
16.6%

Certificate Chain Analysis

Certificate Information
Product Game Configuration C6lr
Description Game Configuration C6lr
File Version 1.34.0.96
Original Name managerx86_241.exe
Verification Status The digital signature of the object did not verify.
Signers RIDEV YAZILIM SİSTEMLERİ LTD ŞTİ; Sectigo Public Code Signing CA EV R36; Sectigo Public Code Signing Root R46; Sectigo (AAA)
Internal Name managerx86_241.exe
Copyright © Digital Gaming Solutions 2025. All rights reserved.
Certificate Chain Summary
Sectigo Public Code Signing Root R46 #1 Primary
Validity Period: 2021-05-25 00:00:00 → 2028-12-31 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 48 FC 93 B4 60 55 94 8D 36 A7 C9 8A 89 D6 94 16
Sectigo Public Code Signing CA EV R36 #2 Chain
Validity Period: 2021-03-22 00:00:00 → 2036-03-21 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 33 D7 08 A8 91 40 53 19 E2 A5 BB D3 39 B9 AD 6E
RIDEV YAZILIM SİSTEMLERİ LTD ŞTİ #3 Chain
Validity Period: 2023-02-20 00:00:00 → 2026-02-19 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 29 5A F1 11 A9 E1 80 67 5A 33 5D F9 E6 48 53 6E

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

The expected hash does not match the digest in SpcInfo

Recommendation: Verify the file source and ensure it comes from a trusted publisher.

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware