Sitemap

SillyPutty Malware Analysis

1 min readJul 7, 2025

Introduction

  • I have been studying malware analysis and came across this malware repo PMAT Labs which has a ton of malware exercises.
  • This is the one we are doing today is SillyPutty.

Scenario

Hello Analyst, The help desk has received a few calls from different IT admins regarding the attached program. They say that they’ve been using this program with no problems until recently. Now, it’s crashing randomly and popping up blue windows when it’s run. I don’t like the sound of that. Do your thing!

Perform basic static and basic dynamic analysis on this malware sample and extract facts about the malware’s behavior. Answer the challenge questions below. If you get stuck, the answers/ directory has the answers to the challenge.

Static Analysis

  • File hash SHA256 is:
  • 0C82E654C09C8FD9FDF4899718EFA37670974C9EEC5A8FC18A167F93CEA6EE83
  • This is a Windows 32-bit executable.
  • “MZ” means we are dealing with a Windows Portable Executable.
  • PE Format
Press enter or click to view image in full size

--

--

No responses yet