YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 5787f6f22d54b31abcc0b190d98d6682e9a8b74a78dbcb9cbe1ad38399d1c7c7.

Scan Results


SHA256 hash: 5787f6f22d54b31abcc0b190d98d6682e9a8b74a78dbcb9cbe1ad38399d1c7c7
File size:344'168 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 00048207fb6bdcad47e226b62485376e
SHA1 hash: 473916e712d6ba75c71ec4cdd99b277d4f0513aa
SHA3-384 hash: 5fa6f36745a5a93e96942688595d6810d894cdd60b0a11d733c7b99f9696625d7010fe26f7b7a2d2ee91b90bb6390a6e
First seen:2025-11-21 19:02:35 UTC
Last seen:Never
Sightings:1
imphash : 666dd62511cf8ff62c970d80cb7a8e8e
ssdeep : 6144:9doiuKdjEwo56L7a8u8ohBz9WbWT8vuWbUcUJG9w+ut:92m9EwoIL7ju8ohBz9T0nuGm+ut
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : f0cc9ab2b2dae071

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:a433dd23-c70c-11f0-a73e-42010aa4000b
File name:00048207fb6bdcad47e226b62485376e
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.UntrustedCertificate.4SharedCDD.UNOFFICIAL
Signature:Win.Adware.Downloader-64497
Signature:Win.Trojan.Downloader-66445
Signature:Win.Trojan.Downloader-66446
Signature:Win.Trojan.Downloader-66447
Signature:Win.Trojan.Downloader-66448

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:golang_bin_JCorn_CSC846
Author:Justin Cornwell
Description:CSC-846 Golang detection ruleset
TLP:TLP:WHITE
Repository:YARAify
Rule name:PE_Digital_Certificate
Author:albertzsigovits
TLP:TLP:WHITE
Repository:

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.