YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 8b0bea9b83fbb9b8bf3c35b85567ff6aab145c5f630b3831ecec70ba903a25d0.

Scan Results


SHA256 hash: 8b0bea9b83fbb9b8bf3c35b85567ff6aab145c5f630b3831ecec70ba903a25d0
File size:121'856 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 08e377d4ed3aa4793c4e79fcc56e6c9f
SHA1 hash: d291e4d494ee1e57ba66bb582d8ac218143ee684
SHA3-384 hash: f1ed00a3edddad426fbe572e4a5b87ac69712575212445c082eb17ba67a323b05a4d3d6247298424866bb0409985eab6
First seen:2025-11-21 19:02:58 UTC
Last seen:Never
Sightings:1
imphash : c347a9512a6979c06ebb79cd474c2925
ssdeep : 1536:hUKGwgxdTZ8iwaMRmoPFRJ/nWvWDaaSacKCud1sWjcdkjuHWrPpYGCq2iW7z:k5uJNmaRJeyH08SWrP6GCH
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:b1e3acd6-c70c-11f0-a73e-42010aa4000b
File name:08e377d4ed3aa4793c4e79fcc56e6c9f
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:PUA.Win.Packer.Asprotect-3
Signature:Win.Malware.Bdld-9770176-0
Signature:Win.Malware.Wapomi-10020301-0
Signature:Win.Trojan.Downloader-64720

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:golang_bin_JCorn_CSC846
Author:Justin Cornwell
Description:CSC-846 Golang detection ruleset
TLP:TLP:WHITE
Repository:YARAify
Rule name:shellcode
Author:nex
Description:Matched shellcode byte patterns
TLP:TLP:WHITE
Repository:MalwareBazaar

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.