YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 8c0f3ba702b34354c88812949fe34fa340517f31b84bbd702ddf772e97bad183.

Scan Results


SHA256 hash: 8c0f3ba702b34354c88812949fe34fa340517f31b84bbd702ddf772e97bad183
File size:188'416 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 95bbfd4f4aa583684a882a6ebcaa28ec
SHA1 hash: a33b8b4127ec9f012d9556a057492f07c3039fb9
SHA3-384 hash: b8756455631525dd176b0bc854eec1340ddd909861eb256124077011c82d45d1137be02650324ed206fea3c0f003d681
First seen:2026-01-04 01:45:03 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 3072:AgxZ7FohqZIwdpatT+ZBkUjilvnqnviuIrd:AgloGPatakUjilPqnviuIr
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 1003873db9313e10

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:fd6c9b81-e90e-11f0-9df4-42010aa4000b
File name:400000.201e3118153f47e3d941fbde9a1b06d7.exe
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Zusy-6878655-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.