YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 1260289588d40dbd0f86b4d8eabcb5b464ae96dac9ff28b4a589f718a8ef77d3.

Scan Results


SHA256 hash: 1260289588d40dbd0f86b4d8eabcb5b464ae96dac9ff28b4a589f718a8ef77d3
File size:1'302'528 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: b8e534320a516eed843c3fcd58c6184e
SHA1 hash: c4c26d0500ef5c7541c40c42d7c78d27c52dd54b
SHA3-384 hash: 0005d97bfc019407ef785e290e5eac494c2a73ae50d990ea370ce426efa0becdfe490df8e4747d806c0e27a8d5978250
First seen:2025-11-20 23:47:53 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 24576:JzU6APMGiHEMQCMwB6SuEwgVcmoQdlUZo8:l5cSGgqCv8
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 818da080a0a08082

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:54e394f7-c66b-11f0-adeb-42010aa4000b
File name:400000.07a35ac72a7556122c7c0c24ff782964.exe
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:Borland
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:pe_detect_tls_callbacks
Author:
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.