Summary | ZeroBOX

black.exe

Malicious Library Antivirus UPX Anti_VM PE64 PE File OS Processor Check
Category Machine Started Completed
FILE s1_win7_x6401 Aug. 12, 2024, 8:51 a.m. Aug. 12, 2024, 8:58 a.m.
Size 1.9MB
Type PE32+ executable (GUI) x86-64, for MS Windows
MD5 4416f8255a013037554c04aad7c0b2d3
SHA256 a798b5783271e848da0af7164c22bc048b122644d60257fbc146a8f98b3cc8b0
CRC32 7FBBE17E
ssdeep 49152:GBzMZYKBuAqzxJznMEKV4WFQ0GaXK6KNaRnFRi9Y4RxkcT5aV:GBzzKJFzbRiyYxks5a
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)
  • Antivirus - Contains references to security software
  • anti_vm_detect - Possibly employs anti-virtualization techniques
  • UPX_Zero - UPX packed file
  • OS_Processor_Check_Zero - OS Processor Check

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

No signatures