YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash dcbfb60593d5acde89c93b73336afda7e775cf2b3e161aef53226e65d3e1eb6a.

Scan Results


SHA256 hash: dcbfb60593d5acde89c93b73336afda7e775cf2b3e161aef53226e65d3e1eb6a
File size:3'551'744 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 0aba59398c846d4bcd62e2b08a0245e2
SHA1 hash: 2c570c07caff8c502ea56612e95b5712533f30ed
SHA3-384 hash: 25ffcd5399d549acf81f11167309a31d2e693ebc4dd2f8034b7681ad97e72c1696afda686dd6324cb652b4505f05a8db
First seen:2025-11-20 23:51:34 UTC
Last seen:Never
Sightings:1
imphash : 21d3663f882b9fb685b090e33b86910e
ssdeep : 24576:CGPFxy5dxnRjHTgXkXHUFCui0IhX1UJVp98Os6V4R58b0bmv+eVb:z9o5dvHTgUX0FRdkMlpaRib2G
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:d8d42505-c66b-11f0-adeb-42010aa4000b
File name:0aba59398c846d4bcd62e2b08a0245e2
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Trojan.Packed2.49423-1.UNOFFICIAL

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:meth_stackstrings
Author:Willi Ballenthin
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.