YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash 9e1ad23a281da5273a28d7cec46473a66f8f47bd74ee901defbf141b5691fecb.

Scan Results


SHA256 hash: 9e1ad23a281da5273a28d7cec46473a66f8f47bd74ee901defbf141b5691fecb
File size:63'929 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 01c09e4e13b9131119ab46713c2f0630
SHA1 hash: acb15c5d2fd2b49cf75f702731b5f2c633a83a44
SHA3-384 hash: da3c02c74cd782e7a1995e9fcbf34363511553c31a1b6119a90a1c99ab5b29ab69954499ba5088045a117b85092b67b4
First seen:2025-11-21 00:00:17 UTC
Last seen:Never
Sightings:1
imphash : 5f995d610803ed38886ee25b89f3b6ec
ssdeep : 768:HQiFq/HBQ/FuktI39dPOsB9kjI41E14grGe76g80MD7q/HBQQQOtZaO7X/RAaabu:wgquFSk3iMD7qVtzDR5aKiBlGKFCB
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 7c1c6ce0d0d4e0e0

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:102d27ee-c66d-11f0-adeb-42010aa4000b
File name:01c09e4e13b9131119ab46713c2f0630
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Vbkryjetor-6622845-0
Signature:Win.Trojan.Agent-1280840
Signature:Win.Trojan.Emotet-10030187-0
Signature:Win.Trojan.Emotet-6444504-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.