YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 857c8ae799898f9ccff53589ca7fc36bd7cbc875187754bcfa30626e2fcb66e5.

Scan Results


SHA256 hash: 857c8ae799898f9ccff53589ca7fc36bd7cbc875187754bcfa30626e2fcb66e5
File size:329'735 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 095078a69a8de930439c89b386517797
SHA1 hash: 7d2b5c83bfb2fb8a7b802dec91f8e77d60de63d4
SHA3-384 hash: 27a7a9b0e0df8ec187ed60ea98478e9897d93414fa031a129c48843ad5a54ecb19667624ebfff8015b7df43cc18e449d
First seen:2025-11-20 23:51:39 UTC
Last seen:Never
Sightings:1
imphash : c6e1b8202aded47b7c2380a87886d20c
ssdeep : 6144:58sKRApdUu4oMD/AMv2KBiKQRZ66z+n4VZbd8g79pgrXNgRnVLjyzhbkidNN25:WsIOdYD9+KnQRZ66z24VZbdrpgrXN2L7
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 6763b3a74bdf7b33

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:db8cfabb-c66b-11f0-adeb-42010aa4000b
File name:095078a69a8de930439c89b386517797
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Win32.Trojan.Agent.GB9KJG.UNOFFICIAL

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.