YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 392383d3c8e6f9ce7008b48594caca11663bc8cf2fa0f57459547ab494d389cb.

Scan Results


SHA256 hash: 392383d3c8e6f9ce7008b48594caca11663bc8cf2fa0f57459547ab494d389cb
File size:4'640 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 103dfde0a51d23590577960122bf3248
SHA1 hash: 503908973d52068fe2c0c372bb2d0416ffefa515
SHA3-384 hash: bc8fd1e2763a567de2b1c51c00930d54acdd0797d5f05d44022034fbf29f4171ffe8b2317f196b5d74a4cda86226b87d
First seen:2025-11-21 02:57:19 UTC
Last seen:Never
Sightings:1
imphash : f9ade0aa18f660a34a4fa23392e21838
ssdeep : 48:61igIoIqgePUXdb4JW/M8NZnChgzwusgd6mduz1lpP4MdtrTIsgmdOBy:EnI7rhXYWk3hgkusgVaLpP4MwmdOs
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:cb9bc471-c685-11f0-adeb-42010aa4000b
File name:103dfde0a51d23590577960122bf3248
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Downloader.Agent.15.AZ.UNOFFICIAL
Signature:Win.Trojan.MSShellcode-6360730-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:Hunting_Rule_ShikataGaNai
Author:Steven Miller
Reference:https://www.fireeye.com/blog/threat-research/2019/10/shikata-ga-nai-encoder-still-going-strong.html
TLP:TLP:WHITE
Repository:Neo23x0

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.