YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 9c48f4f80fee9a555ea2e886e481cf56e8344672917cd02ad11deb63a61d6292.

Scan Results


SHA256 hash: 9c48f4f80fee9a555ea2e886e481cf56e8344672917cd02ad11deb63a61d6292
File size:94'208 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 06896ee0036dd6bc9bfe012a4b1da82e
SHA1 hash: ae44ffe003e3041edf87941aaf89943328a64f21
SHA3-384 hash: dc6291f64653de59f628abef0dca0b483b07af2f8a6b5f564c023f529580785c6fd088cb534ecb7e98385a38b7484286
First seen:2025-11-21 19:00:40 UTC
Last seen:Never
Sightings:1
imphash : 5d80cfdfe5f2b9bcbf7e42c251821f55
ssdeep : 768:zW4wnebSdDlmkok6lRGXu+jKZAOWjpiRHVAGr4PzpyRAJ7IwnDoSdP:1bC4Bk6lMTOWw4PkRAPo2
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 04ccfee2ece4a484

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:5f8caa8b-c70c-11f0-a73e-42010aa4000b
File name:06896ee0036dd6bc9bfe012a4b1da82e
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Trojan.Pacar-1

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerHiding__Active
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.