Suspect
PE Executable
MD5: 71d7459d44d8e6017b2bd14542a71c3d
Size: 1.05 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Low
| MD5 | 71d7459d44d8e6017b2bd14542a71c3d |
| Sha1 | b01c3e22af610b4c91c54ab80573481ebfbf9c19 |
| Sha256 | 10d403fbc19c7a382127a50eda809cc020fbabcabb7564d311d7de99935e01e2 |
| Sha384 | 925201729f25f4022b65512766786a8b94065b152e378cf3a279e74bb80506a86a94fc5190fb2289ee8722c95062bbf3 |
| Sha512 | 338ce6cf0c144e8f5d33cffdade66fbfd788ad8743023af5833b45d9d0d5902615015fc63aa3f314c87a1076a26c346ff0003add90080589ba6f1a03ddd11d3c |
| SSDeep | 24576:jpW6pGX0rLxLeD0CWvpEcFb7ATVv4H7B5SxyXxe:J4QLlysp17S8B5wUs |
| TLSH | 9D2512396611C51BC9562339CE72F2F8137C2EA9E901C607AFD9BDEFB933701A851642 |
STICH
beta
No STICH Path has been generated for this analysis yet.
3 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.
bin
2img
1| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: C:\Users\Administrator\Desktop\Client\Temp\pRRAVDlXsG\src\obj\Debug\RIzb.pdb |
| Module Name | RIzb.exe |
| Full Name | RIzb.exe |
| EntryPoint | System.Void SmartCityManager.Program::Main() |
| Scope Name | RIzb.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | RIzb |
| Assembly Version | 9.4.6.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.8 |
| Total Strings | 93 |
| Main Method | System.Void SmartCityManager.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |