YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 60c373f3a3620f494cb06cc547d371a61815366caf2017beb881a1d19a09e817.

Scan Results


SHA256 hash: 60c373f3a3620f494cb06cc547d371a61815366caf2017beb881a1d19a09e817
File size:479'232 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 18694f32e6abcf32ef8e650f4963b177
SHA1 hash: 14ed7832427d60da19e7d089e38046ab94b6296d
SHA3-384 hash: 87508ad389d852116648c88c3e6b57e87e651ee10df54dd29e8094523ca5920a07c3bdd37ae601eb237fe82ca3a13366
First seen:2025-11-21 19:03:50 UTC
Last seen:Never
Sightings:1
imphash : 5d6cad172c5535e4b6b6bbd246571621
ssdeep : 3072:Nj/mokEAYLxVyfxePbkp2c5OoyOeZK77wz7oP+4nBOjg32HAAtClI:Nj+oRtVyYPQp2ckgW+BOjeQAAt
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 19b1b1b17068c881

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:d0fff54a-c70c-11f0-a73e-42010aa4000b
File name:18694f32e6abcf32ef8e650f4963b177
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Dropper.Ajku-10014126-0
Signature:Win.Dropper.Vbclone-10036195-0
Signature:Win.Malware.Midie-6847894-0
Signature:Win.Malware.Midie-6848630-0
Signature:Win.Trojan.Generic-9959068-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.