Suspicious
Suspect

PE Executable
MD5: c9d9eede70fd96f142ece4964a624976
Size: 653.31 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 c9d9eede70fd96f142ece4964a624976
Sha1 f13c8a237bc4d5feb2a788b4a7cb4f0aefa20f3e
Sha256 ad188854da20c440975e7bf1bfc218c1917da6d7155c77b8c03fefc148ac1759
Sha384 be741c46effa82057916f50db3f86288b8837c47b885fd167561c2fa09d29dea8ff657046d02d4109c3b86618e8e18a7
Sha512 e0ce3302ca8dcc12e527de71d5286012973e42be754e4570d784ee59b841069a91f893d7f0f7a5ea95e6f1b00b38f4eafe2fa72f9e05704a61fe54715bcf7d52
SSDeep 12288:liwSnA9iATs7319SpFB3OQWB+4+h0PnW2sx0tXW0:FSnA9Xg3r0zOB+4LfW2jR5
TLSH 2BD4125A1216DA03E8A613B21CE0E3F4A3B59EEDB911D3538ECD7CE77C263847941392
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NumberGuess.MainForm.resources
NumberGuess.Properties.Resources.resources
gap
[NBF]root.Data
wtDP
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: SCKv.pdb
Module Name
SCKv.exe
Full Name
SCKv.exe
EntryPoint
System.Void NumberGuess.Program::Main()
Scope Name
SCKv.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
SCKv
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
102
Main Method
System.Void NumberGuess.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void NumberGuess.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NumberGuess.MainForm.resources
NumberGuess.Properties.Resources.resources
gap
[NBF]root.Data
wtDP
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙