YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 786aee394945d2ba1bdebc02704f6cf0504041550d5e83874858f453caef5959.

Scan Results


SHA256 hash: 786aee394945d2ba1bdebc02704f6cf0504041550d5e83874858f453caef5959
File size:188'423 bytes
File download: Original Unpacked
MIME type:application/x-dosexec
MD5 hash: 18f3cd827aed0ab176ea7c102ccbe374
SHA1 hash: a55390194a69a81f7a5dd019048dd868444dd751
SHA3-384 hash: 8efa5e8da72800569a69fcdc83fe51da2ea089eeed0b4e8ecdf02d2b5d333221276c69d6b8f58e17ecd2a44aed5c22e4
First seen:2025-11-21 00:02:35 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 3072:QTffKfojdQkUZNKYCY/8Sa5MlvnqXcGud:QTCo1UNKq8p5MlPqXcGu
TLSH : T1F00480219970BB16E951493817E06BFB001D3C2F47E5060A7CAEEE5F3763D9A34AF942
telfhash :n/a
gimphash :n/a
dhash icon : 1003873db9313e16

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:624835ef-c66d-11f0-adeb-42010aa4000b
File name:18f3cd827aed0ab176ea7c102ccbe374
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Zusy-6878655-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.