Suspicious
Suspect

PE Executable
MD5: 92563117903b3caa77e93811ee05e8ba
Size: 775.68 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Very low
MD5 92563117903b3caa77e93811ee05e8ba
Sha1 227731ffc147c0e45b9b162dd96448f194cd0abf
Sha256 22bfdf4ec2732b1eeb75d671dfb2b417f64242b9f30e366c1207cff835a3e175
Sha384 bfd87e9a9e9118e5fd882f9c87b80afa1d70aee6638282d39bd851569f7210312a9bf891598405b23b9d2a7d531fcc8c
Sha512 eec0707445bd2362559952e5501fc67317e4c825ac4232a49929b96d70a73fb6ee64351a933cc87abfa7c58cf4aff7d8b6b6a51090311ed70b70492368c5eacc
SSDeep 12288:M9JCOh92Wl80KH6xKkiZKJj6WOPeD6YZNcEJLuLXmxvq1O5YEDT0a1/nkJs/:KN3KHOKkiZKFbLOiNcauahqOJDRFkJs
TLSH 9AF41218369AEF52D9A90BF41530D17113B6BD8EA802D30B4EDEFCE7B8247483592697
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual C++ v6.0 DLLMicrosoft Visual Studio .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ModernAdapter.MainForm.resources
ModernAdapter.Properties.Resources.resources
NgrD
SL
Name Value
Module Name
suNi.exe
Full Name
suNi.exe
EntryPoint
System.Void ModernAdapter.Program::Main()
Scope Name
suNi.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
suNi
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.0
Total Strings
617
Main Method
System.Void ModernAdapter.Program::Main()
Main IL Instruction Count
12
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
call System.Void ModernAdapter.Program::InitializeApplication()
nop <null>
newobj System.Void ModernAdapter.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Module Name
suNi.exe
Full Name
suNi.exe
EntryPoint
System.Void ModernAdapter.Program::Main()
Scope Name
suNi.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
suNi
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.0
Total Strings
617
Main Method
System.Void ModernAdapter.Program::Main()
Main IL Instruction Count
12
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
call System.Void ModernAdapter.Program::InitializeApplication()
nop <null>
newobj System.Void ModernAdapter.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Embedded Resources UNKNWOWNsuspect
8huhuhuhu
Suspicious Type Names (1-2 chars) UNKNWOWN
0huhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ModernAdapter.MainForm.resources
ModernAdapter.Properties.Resources.resources
NgrD
SL
No malware configuration was found at this point.
Embedded Resources UNKNWOWNsuspect
8huhuhuhu
92563117903b3caa77e93811ee05e8ba
Suspicious Type Names (1-2 chars) UNKNWOWN
0huhuhuhu
92563117903b3caa77e93811ee05e8ba
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙