YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 49fde12b32d8fe76d2bc58462b9504ed6e96344565a98801dcb97d07b7a34e24.

Scan Results


SHA256 hash: 49fde12b32d8fe76d2bc58462b9504ed6e96344565a98801dcb97d07b7a34e24
File size:70'302 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 1433d5e51a2c46390e505fa02578692e
SHA1 hash: fcd7943efc0f536e1a93b4ac5370b09617d30542
SHA3-384 hash: 4ee91d38f4c625ff0e5b813b42c4102c14bfcedaebc8771df5940dcf29d5b8f64aec70a9429649f88ce9856ae8efcc14
First seen:2025-11-21 19:01:06 UTC
Last seen:Never
Sightings:1
imphash : 63a97d7c2d54a7b9681bbfe44fd400a8
ssdeep : 768:vcCf9GD1zkh57IuDKIV9x9OER+ywwO4a+rKkznN7wUBUpHK9WO:QC57TKMr95Rqjk9r5MO
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:6f67995d-c70c-11f0-a73e-42010aa4000b
File name:1433d5e51a2c46390e505fa02578692e
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Tedy-10043980-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:golang_bin_JCorn_CSC846
Author:Justin Cornwell
Description:CSC-846 Golang detection ruleset
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.