YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash e72ad3132a9649a3ba4817fb801d0880aaa06ea0b4a3f81384f57fe60d00408b.

Scan Results


SHA256 hash: e72ad3132a9649a3ba4817fb801d0880aaa06ea0b4a3f81384f57fe60d00408b
File size:3'552'256 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: cbad88b28405badd263122742e79e72a
SHA1 hash: 670115ccbe105bbc86105ef4ac8f65f9c883d1d7
SHA3-384 hash: 02d3610fb56cc99f4737174cf7f174d1a688ee61ead275033fd93f39e0e8850bd5df6f50d84c27d0a521d2de341912e2
First seen:2026-03-14 15:30:50 UTC
Last seen:Never
Sightings:1
imphash : cee8eeaa8c42ac0c443ef420a43be087
ssdeep : 49152:NjZOV12znyZNv8tn6slQ1K8ykHoGHfk0sUUefA4IuBDqUYEGBlGhK7lKLcV1wvbn:Uv8teU8d3/kpIKnUYVmK7QLcV1Mba4D
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:c835d859-1fba-11f1-b47f-42010aa4000b
File name:cbad88b28405badd263122742e79e72a
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:SecuriteInfo.com.Trojan.Packed2.49423-1.UNOFFICIAL

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:meth_stackstrings
Author:Willi Ballenthin
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.