YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 1dacd42041c124f52741a9a384c9d0be7d9dd10c5e03520a0a5386e2cd4590f2.

Scan Results


SHA256 hash: 1dacd42041c124f52741a9a384c9d0be7d9dd10c5e03520a0a5386e2cd4590f2
File size:479'235 bytes
File download: Original Unpacked
MIME type:application/x-dosexec
MD5 hash: 18a63b3e75f9dc95daff4fe06ed6a12f
SHA1 hash: 0186b3ee103cc00eacffc7e1e1fcccd99a3ddda9
SHA3-384 hash: 9eaaba3f69c117205a76edbf3f59fb4b75ccc73d45c9c78aae788a3edb151457b9e3c2d886e884a57945bcdddd3946c9
First seen:2026-04-07 15:46:17 UTC
Last seen:Never
Sightings:1
imphash : 5d6cad172c5535e4b6b6bbd246571621
ssdeep : 3072:QSefogYxj3YtU7bS9pzf/ufL/Lp/9KYpCBQHrylqvF1b54TeetOfO4:QS2ozItU7Ypb/uf6kVpF19JetO
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:eaaf3d22-3298-11f1-b47f-42010aa4000b
File name:18a63b3e75f9dc95daff4fe06ed6a12f
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Midie-6847894-0
Signature:Win.Malware.Midie-6848630-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:telebot_framework
Author:vietdx.mb
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.