YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 0a6385d0a15f8be46b89d0e4a39080b60d9b50f92ad3e69971fb87e4afeeed89.

Scan Results


SHA256 hash: 0a6385d0a15f8be46b89d0e4a39080b60d9b50f92ad3e69971fb87e4afeeed89
File size:213'056 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 1625b3d2c741cf7057756f00cff9aee2
SHA1 hash: 6f43deac50184432137b0e708ea3d68be0edfa58
SHA3-384 hash: aabd68dd8b33820b9c6e7a374d7fd3c337558317ba8e09478c52e47883c64b2c6f30d7f2c755f5f938df3c3dd3b6ab2d
First seen:2025-11-20 23:51:46 UTC
Last seen:Never
Sightings:1
imphash : 520c130e82cbe6120da2d52c754c2522
ssdeep : 6144:MZWia9ubuBsyGvMwlvaB8Mi5vz9IGePA+hq5y:aquCuygMQjd5vJIBP1p
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 0000000000000204

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:dfea7110-c66b-11f0-adeb-42010aa4000b
File name:1625b3d2c741cf7057756f00cff9aee2
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Trojan.Shiz-1008

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.