YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash db9947b9742383e18c1140ca9eb779c898d694719c3b860c5631851d171c0e70.

Scan Results


SHA256 hash: db9947b9742383e18c1140ca9eb779c898d694719c3b860c5631851d171c0e70
File size:53'650 bytes
File download: Original
MIME type:application/pdf
MD5 hash: 479d7c0d20dc65f567a192785274afbe
SHA1 hash: a654c76eacfcde23e6afc8e314759ccacd34157c
SHA3-384 hash: 6fde979787b02224535f48371a3fc523e11c7a8080a5d55b5bc026e1e8404c52aa625d22382dd27a42cde8b34fe2172a
First seen:2026-04-15 03:00:04 UTC
Last seen:2026-04-16 03:08:08 UTC
Sightings:2
imphash :n/a
ssdeep : 768:sCZdcwxCDdheMbEW0VfDk5LK4gMfnRCIYn240y+2WuBLQiYiu3v7FZkevLMH6rFW:O5JonWG4gMzOb0aEiYiekeWkFsaPE
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 2 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:7ee63bd4-3941-11f1-bfeb-42010aa4000b
File name:API_Activity Statement for Nalko Engineering 15Feb2026-14Apr2026.pdf
Task parameters:ClamAV scan:True
Unpack:False
Share file:False

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:NET
Author:malware-lu
TLP:TLP:WHITE
Repository:

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:33d97bfe-3877-11f1-bfeb-42010aa4000b
File name:API_Activity Statement for Nalko Engineering 15Feb2026-14Apr2026.pdf
Task parameters:ClamAV scan:True
Unpack:False
Share file:False

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:NET
Author:malware-lu
TLP:TLP:WHITE
Repository:

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.