YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 91b61998f4e9dc1be5c2e764c6dc97fb9aaf4a98097cbd00d1a9be2da01dbde3.

Scan Results


SHA256 hash: 91b61998f4e9dc1be5c2e764c6dc97fb9aaf4a98097cbd00d1a9be2da01dbde3
File size:81'920 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 0755f705b4d15fe9c7875c305b1b9a62
SHA1 hash: 3f8f0802f3a4a159b5b927db356fa3918b172f4b
SHA3-384 hash: aa02be61202bbc9c8ee900f9bdf642b5f22ef20d83e3fb4b4708724d6ad5ff1e5b8f9369af03590b88353a16f8b822c3
First seen:2025-11-21 02:51:35 UTC
Last seen:Never
Sightings:1
imphash : 02eaa4851334f6695809b3d0a008cf6b
ssdeep : 768:GdSTj3dALMNyGtT4bE9XJuFbvvJ70TxLdeVR3l:GSTjtALMd6bE9XJuFrvJ70z+V
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : b286a6b69686be9e

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:febd3824-c684-11f0-adeb-42010aa4000b
File name:0755f705b4d15fe9c7875c305b1b9a62
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:PUA.Win.Packer.Aspack-29
Signature:PUA.Win.Packer.Aspack-30
Signature:PUA.Win.Packer.Asprotect-3
Signature:PUA.Win.Packer.NspackDotnetNor-1
Signature:PUA.Win.Packer.NspackDotnetNor-2
Signature:Win.Malware.Ipamor-10004104-0
Signature:Win.Trojan.Ipamor-10
Signature:Win.Trojan.Ipamor-3
Signature:Win.Trojan.Iparm-1

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:ASPackv212AlexeySolodovnikov
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:ASProtectV2XDLLAlexeySolodovnikov
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:INDICATOR_EXE_Packed_ASPack
Author:ditekSHen
Description:Detects executables packed with ASPack
TLP:TLP:WHITE
Repository:diˈtekSHən

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.