YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 4e0788b754f2786b9322aad7c84c0332db6ba4371fe9eae3be696daf8135c956.

Scan Results


SHA256 hash: 4e0788b754f2786b9322aad7c84c0332db6ba4371fe9eae3be696daf8135c956
File size:188'416 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: c8135dbab6f864c742a7304bd2bcee53
SHA1 hash: 8b1e776cd75d8cd67c27ca67591dd98992618f46
SHA3-384 hash: f1ba3e8e0964dba20a489ec9892e00e1f6cae1d01e4ca576a3c160e84c4a94b0a462d301b2f050636df4ad5e1161343c
First seen:2026-02-11 17:18:37 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 3072:ulAJWQoBl5/i7lgJr4S8ScTolvnqXcGukr1:ul4otMlg58HTolPqXcGukr
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 1003873db9313e16

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:b3facc85-076d-11f1-82f6-42010aa4000b
File name:400000.15a1202d20ddf6e376bb847acd62fd8a.exe
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Zusy-6878655-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:telebot_framework
Author:vietdx.mb
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.