MalScore
100/100
MalFamily
Malicious

black.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 10/70 Related 2620
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 603.00 KB (617472 bytes)
Compile time: 2019-08-08 20:56:26
MD5: 4f8a4cfc2956799d0c9ace57f484c834
SHA1: a0827a785fbea5c846f23d90af841e404985a6c6
SHA256: 18172d4ced864f30f9dd9d69f22f19de2b14ac9a073e90ca728ffd0a14c82d33
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-24 13:42:04
Last submission: 2019-09-24 13:42:04
Filename detected: - black.exe (1)
URL file hosting
hXXp://acmestoolsmfg.com/black.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-24 01:11:09 [10/70] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x865e4 550400 e1fb2f06b637874b0071022c34f1419c 3a6e960663b2f12fad7e914e5f00a706effa72ba
.rsrc 0x8a000 0x101d0 66048 d8ba441614dcad060ff2e4b1c272c84a 20788cb63ea29e3b73208c5fbfb8aff0095d954f
.reloc 0x9c000 0xc 512 b9d6c6b1354238ce857c281f2981f593 8774ef491bf5209e55e39a9657479a61b741fa60
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven01_64 Seven01_64 VirtualBox 2019-09-24 13:41:21 2019-09-24 13:45:02 221

17 Behaviors detected by system signatures