YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 21280e7daaeb7fbb01826aab2071e5ef0d5dd94c34c1ac6afd5fc4d1b974fe0d.

Scan Results


SHA256 hash: 21280e7daaeb7fbb01826aab2071e5ef0d5dd94c34c1ac6afd5fc4d1b974fe0d
File size:73'728 bytes
File download: Original Unpacked
MIME type:application/x-dosexec
MD5 hash: 01ea3a16a495aacc438bdb2ab318fb32
SHA1 hash: 5f154124ba03f228be2155fa4ec015b19fd8c468
SHA3-384 hash: d089e9b1080b958b93ed93c0cce1e62bfde2b3a1a446225f64e6dcca17c0f8fd760281a1a6452c0ad02e5b109eca3345
First seen:2026-04-12 17:02:47 UTC
Last seen:Never
Sightings:1
imphash : f34d5f2d4577ed6d9ceec516c1f5a744
ssdeep : 768:Me+XsgS1lTmf3Ho9AhlVz+oNhAKL/X6YbIn0jo86wbRksWXK97ALkOEhS8SHfC:9+XUif3o9ElV6Re76wbRko8LIaK
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 1064e4d0c4f8f0cc

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:6e93e862-3691-11f1-bfeb-42010aa4000b
File name:01ea3a16a495aacc438bdb2ab318fb32
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:NET
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:NETexecutableMicrosoft
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:pe_imphash
TLP:TLP:WHITE
Repository:MalwareBazaar
Rule name:Skystars_Malware_Imphash
Author:Skystars LightDefender
Description:imphash
TLP:TLP:WHITE
Repository:MalwareBazaar
Rule name:classified
Author:classified
Description:classified
TLP :TLP:AMBER

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.