YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 5d8442ef95f63a157e2105d45ff75da861e968ec416c1b029e26889f1fc1c3fd.

Scan Results


SHA256 hash: 5d8442ef95f63a157e2105d45ff75da861e968ec416c1b029e26889f1fc1c3fd
File size:772'197 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 05dfdf30859ff7bcda942176af1a8be9
SHA1 hash: 00bc037c8d15ff3da1185bef9483277fdb36a1f4
SHA3-384 hash: bf165dfc950ae522bda66b2a2d17dd8c5a1fc5071037544f9993698b8ef0668b5914ef935a6bc5fe7fb1347019a3773d
First seen:2025-11-21 19:03:48 UTC
Last seen:Never
Sightings:1
imphash : 34791a1ad0a42b816d48d1d1c182fe7d
ssdeep : 12288:Cmhj3dUlzn3DSudvsh8Awf3XFaZmBITVJPtSrE37yG2LmxILR:1hLalj3DSudvGM3MXTVhtSQWGtx+R
TLSH : T199F41221B5D48072F06351304AB9D7B18F2FBD624BA480DBBB8889BA1E716D1DF3435B
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:cfe15b7a-c70c-11f0-a73e-42010aa4000b
File name:05dfdf30859ff7bcda942176af1a8be9
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Variant.Zusy.413832.UNOFFICIAL
Signature:Win.Malware.Vlzswk-10040902-0
Signature:Win.Malware.Zusy-10040667-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:golang_bin_JCorn_CSC846
Author:Justin Cornwell
Description:CSC-846 Golang detection ruleset
TLP:TLP:WHITE
Repository:YARAify
Rule name:UPXV200V290MarkusOberhumerLaszloMolnarJohnReiser
Author:malware-lu
TLP:TLP:WHITE
Repository:

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.