YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 16fb43b2b74d3f2cb140aea1d1cdcf2a07610819d73ef12982c6d039c9a75483.

Scan Results


SHA256 hash: 16fb43b2b74d3f2cb140aea1d1cdcf2a07610819d73ef12982c6d039c9a75483
File size:188'435 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 0460b0334cbd6e4b0eb9406d36dadbe0
SHA1 hash: f607b2a88210c4a3b6d5e28f3d92aa10e41e3429
SHA3-384 hash: 05b21dac7be46f0b6d6595814ba750d3a5a7f76f9d399fc0aa2c983300c95517d960622ca15166c9e8d546b43449be01
First seen:2025-11-21 02:52:36 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 3072:xnBe6bolwvvnYCv3xIDu8w3hvv9qOrin7:xnRoGYCvx8chvlqOrin
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:2301adf3-c685-11f0-adeb-42010aa4000b
File name:0460b0334cbd6e4b0eb9406d36dadbe0
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Zusy-6878655-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.