Suspicious
Suspect

e91ed35d12dc961cae85b24b43c0ba6e

PE Executable
MD5: e91ed35d12dc961cae85b24b43c0ba6e
Size: 740.35 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 e91ed35d12dc961cae85b24b43c0ba6e
Sha1 0e892ce5bcc21fa7c3ce828eb04b03a04af10d69
Sha256 ffc45b80b1fc40415c69b170cdf563b268bfb5653e17c83f6d3722b7f6cfe391
Sha384 2577b574dcec6b81d6003157918ad9e5ca4e280a44ff40dc120a6bbea54e17fa744587e7461b9aec35768e43af3aa0f1
Sha512 5072b40407a9d14fdc9174f03ece72b5c88e559eb797f274453149072fb1112de0d699cbdc863c5f8e3302eaba1cbf0e312173fe45b08f7f02070b2b8d3071fe
SSDeep 12288:1m0uf0Rk1FGAdS/10ldDBVaXIPiz+IT4f6crUwFUPeN84ysVOPhbv7OpG7UpI7S:fwRg0lpUIfISrhePeNcEg7U1
TLSH 60F4014467EADA05E5FA0B741A72E27447F87CAADD21D30A4FD92CEB7926B40CD10363
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
MonitorSync.Properties.Resources.resources
HQ
[NBF]root.Data
bpnL
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Module Name
LdJX.exe
Full Name
LdJX.exe
EntryPoint
System.Void MonitorSync.Program::Main()
Scope Name
LdJX.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
LdJX
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
491
Main Method
System.Void MonitorSync.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void MonitorSync.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
PDB Path PATH
Ldhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
MonitorSync.Properties.Resources.resources
HQ
[NBF]root.Data
bpnL
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
PDB Path PATH
Ldhuhuhuhu
e91ed35d12dc961cae85b24b43c0ba6e
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙