YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash d823fb5bc61be435b598c38c4fe52ceafc2fe8b7daf3f2590cc9fc236f727255.

Scan Results


SHA256 hash: d823fb5bc61be435b598c38c4fe52ceafc2fe8b7daf3f2590cc9fc236f727255
File size:188'418 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 1938fc579d0630d1ad3e1daa28c0a9b0
SHA1 hash: d05e71d3b40a8a190af8159875c59b8efa0b513b
SHA3-384 hash: 8ab6723de346913e4b521a963a4d01725e94142d0e066e879243a6910b439df5f837784e266b9e9b6e41abbded8c56d8
First seen:2025-11-21 02:46:50 UTC
Last seen:Never
Sightings:1
imphash :n/a
ssdeep : 3072:eh77Jxkoa102gdzMyC0eE6U5sq6lvnqnxeum:ehwo8czM1U+q6lPqnxeu
TLSH : T1AF048F628970BB13E951493517E06BFB801D3C2F4BE5020A7CAEDA5F3763D9A349F942
telfhash :n/a
gimphash :n/a
dhash icon : 1003873db9313e10

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:54558ba4-c684-11f0-adeb-42010aa4000b
File name:1938fc579d0630d1ad3e1daa28c0a9b0
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Malware.Midie-6847970-0
Signature:Win.Malware.Zusy-6878655-0

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:SEH__vba
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.