YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 5ae660a67207fd83f209794ca0beb0ffe6ffcb9870739fb98dab90468671b1f0.

Scan Results


SHA256 hash: 5ae660a67207fd83f209794ca0beb0ffe6ffcb9870739fb98dab90468671b1f0
File size:2'911'648 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 0476d144ba65040b86a2644696d487b2
SHA1 hash: 2b019234abbcc8f63d645ecebd879024c59c64c2
SHA3-384 hash: fc9abc1e7f141127d5852632d3c92171c2f65ab59fc65ff52053e05e5d703bf20fc7e0131866c35d6092efb41b8047bc
First seen:2026-04-12 17:03:07 UTC
Last seen:Never
Sightings:1
imphash : d68af4e597212e1db5226e6a9070be35
ssdeep : 49152:IH+IvQEj9vfX9RdOqQDJNm5OKvkHWgbvbGzoWFUCz++dksLC0tOgaDH:IJvQ0vP9RdCcx5gbvbHWXdH/tOV
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : e0a8eed8d0a62464

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:7a34e1a9-3691-11f1-bfeb-42010aa4000b
File name:0476d144ba65040b86a2644696d487b2
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:golang_bin_JCorn_CSC846
Author:Justin Cornwell
Description:CSC-846 Golang detection ruleset
TLP:TLP:WHITE
Repository:YARAify
Rule name:PE_Digital_Certificate
Author:albertzsigovits
TLP:TLP:WHITE
Repository:
Rule name:TH_AntiVM_MassHunt_Win_Malware_2026_CYFARE
Author:CYFARE
Description:Detects Windows malware employing anti-VM / anti-sandbox evasion techniques across VMware, VirtualBox, Hyper-V, QEMU, Xen, and generic sandbox environments
Reference:https://cyfare.net/
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.