Suspicious
Suspect

PE Executable
MD5: c81227e7291a7636a6750961346e26d1
Size: 823.3 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 c81227e7291a7636a6750961346e26d1
Sha1 6da5aefa4c60b5a2027bffa23e66c997baa3a6e9
Sha256 4df0ed007f7b8dbb52f37facd1bef7638fc216804045167f2af37b32c68a2d71
Sha384 3dd907bca00d7e126e06a34d11bf8c0d84f156bb37aff3c644691d5eb84fed91561583ecad09d15b6d7bca923b9d392b
Sha512 ad74802c3908510430c6bbeb94a8392eae860eef895f4a2e884d73722359647f56500b35533449192ae121f0801bfdd15082d657bf6cbdaeaf95654d332fa258
SSDeep 12288:P0OWbJJD8wHSCvgr1FXjKol9Ps8FGlJJSWID2SLV4goXH5PxK/olxgv1Iv7J:OJ2USCvgrf+UglJJSWEFegoXZ53GIv7
TLSH D8051291239AC812E8A997B41CA1D3B4177D6F99E011D3038FFEBDE7793AB103491792
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CSVViewer.Forms.MainForm.resources
CSVViewer.Properties.Resources.resources
KS
[NBF]root.Data
TBDQ
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: SuKJ.pdb
Module Name
SuKJ.exe
Full Name
SuKJ.exe
EntryPoint
System.Void CSVViewer.Program::Main()
Scope Name
SuKJ.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
SuKJ
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
183
Main Method
System.Void CSVViewer.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void CSVViewer.Forms.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CSVViewer.Forms.MainForm.resources
CSVViewer.Properties.Resources.resources
KS
[NBF]root.Data
TBDQ
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙