YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 24a08172809d2b5040205c45848a7cb9035e590867ed0ef80618f0aa302cbd40.

Scan Results


SHA256 hash: 24a08172809d2b5040205c45848a7cb9035e590867ed0ef80618f0aa302cbd40
File size:240'640 bytes
File download: Original Unpacked
MIME type:application/x-dosexec
MD5 hash: 12f68e2a58b49c1af58eace8ab9196d0
SHA1 hash: a394a9d6b89cd6639ad6dff749e235149ccdf721
SHA3-384 hash: 1bf6d6b9356f82206d7a8cbd0a3bc7efe1d9bc9cfd2f6aaf5197a7b19c8d6eee44535dc778cc0777cf5afd6f147ae662
First seen:2025-11-21 02:46:24 UTC
Last seen:Never
Sightings:1
imphash : 54b2a80cf1c94c7cdb749c0ee641a9db
ssdeep : 6144:DQcfKfRhdkk7szHoR5esratFiTR1MlAWCX79+1D:DQAO/kk7UIR5ePCYlAWdD
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:45319495-c684-11f0-adeb-42010aa4000b
File name:12f68e2a58b49c1af58eace8ab9196d0
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Hoax-10022874-0
Signature:Win.Packed.Copak-10015994-0
Signature:Win.Packed.Generickdz-10020769-0
Signature:Win.Packed.Lazy-10005437-0
Signature:Win.Packed.Razy-10010080-0
Signature:Win.Packed.Razy-10012935-0
Signature:Win.Trojan.Packz-10017362-0
Signature:Win.Trojan.Razy-10015064-0
Signature:Win.Trojan.Razy-10016933-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:pe_detect_tls_callbacks
Author:
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.