YARAify Scan Results
You are viewing the YARAify database entry for the file with the SHA256 hash f378b9787f22ba4fa7b5bee186b64ffdc5c5f42f16a331ccff181ee613a62b95.
Scan Results
| SHA256 hash: | f378b9787f22ba4fa7b5bee186b64ffdc5c5f42f16a331ccff181ee613a62b95 | |
|---|---|---|
| File size: | 188'416 bytes | |
| File download: | Original | |
| MIME type: | application/x-dosexec | |
| MD5 hash: | cc8d6af13304fb40628c11c1bd9a9a4c | |
| SHA1 hash: | dd54f0d5365f1c4cd3910a479d0288230c137aec | |
| SHA3-384 hash: | 00dddd3a59bd2eda03661c8e14ba4a5caf4440403de1ab77ba658fe75711ede0d67d9b12f52cc539d900bd00d18a624a | |
| First seen: | 2026-10-09 22:54:07 UTC | |
| Last seen: | Never | |
| Sightings: | 1 | |
| imphash : | 5951b823ef2b49d1e906a43d19847e39 | |
| ssdeep : | 3072:o+Eu2fozxQMfZY5YCosfSr55lvnqXcGu6rS:o+IoxxY55fY55lPqXcGu6r | |
| TLSH : | n/a | |
| telfhash : | n/a | |
| gimphash : | n/a | |
| dhash icon : | 1003873db9313e16 | |
Tasks
There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.
Task Information
| Task ID: | 5564be87-c434-11f1-b2b6-42010aa4000b | |
|---|---|---|
| File name: | 400000.8a959459-fc25-43b4-b081-2393876ab9c3.exe | |
| Task parameters: | ClamAV scan: | True |
| Unpack: | False | |
| Share file: | True | |
ClamAV Results
The file matched the following open source and commercial ClamAV rules.
| Signature: | Win.Malware.Zusy-6878655-0 |
|---|
YARA Results
Static Analysis
The following YARA rules matched on the file (static analysis).
| Rule name: | MULTI_Malware_Unknown_ForgeAuto_9c694c2d_Extrait |
|---|---|
| Author: | Marjoriefort |
| Description: | Detects Unknown (inconnu, etat extrait) |
| TLP: | TLP:WHITE |
| Repository: | YARAify |
| Rule name: | pe_no_import_table |
|---|---|
| Author: | |
| Description: | Detect pe file that no import table |
| TLP: | TLP:WHITE |
| Repository: | YARAify |
| Rule name: | SEH__vba |
|---|---|
| Reference: | https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara |
| TLP: | TLP:WHITE |
| Rule name: | telebot_framework |
|---|---|
| Author: | vietdx.mb |
| TLP: | TLP:WHITE |
| Repository: | YARAify |
Unpacker
The following YARA rules matched on the unpacked file.
Unpacked Files
The following files could be unpacked from this sample.