YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 2a7d64239ea49afdf191f8421918bc7c589f7b160c360882f636664f6197b791.

Scan Results


SHA256 hash: 2a7d64239ea49afdf191f8421918bc7c589f7b160c360882f636664f6197b791
File size:274'433 bytes
File download: Original Unpacked
MIME type:application/x-dosexec
MD5 hash: 0d4ad3ffef5a0cc043a75d47d5c8352c
SHA1 hash: 2de6d28a5000fbfcd52813b1d70ae52c052e156c
SHA3-384 hash: 795c72cb6a8bd028f15caadac34fa6bfdf3b9c0d13788eb269d6042f83868847e87ea1dcaeb7b1ed631b75fe6e06c76d
First seen:2025-11-21 00:00:16 UTC
Last seen:Never
Sightings:1
imphash : 664a2b324a8857d7d4ab8815c756b5bb
ssdeep : 3072:WlyqrCdA6XCIMKgynyICvMtBCJEX7ziQGe+hyiq4Lf8Sly7X9R0zwr:uyqrh+HNgyncvpELEe+htGD0zw
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:0f994614-c66d-11f0-adeb-42010aa4000b
File name:0d4ad3ffef5a0cc043a75d47d5c8352c
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Packed.Glupteba-10035936-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:pe_detect_tls_callbacks
Author:
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.