Authenticate for API access | If you are experiencing issues with receiving data from abuse.ch platforms via API, please ensure your requests are authenticated. ➡️ Read here for more info

YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash a24141c23c5afd3ceedf423039498ae8946c7c10351111fe468c0b7a8e6de487.

Scan Results


SHA256 hash: a24141c23c5afd3ceedf423039498ae8946c7c10351111fe468c0b7a8e6de487
File size:758'546 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: 57c7efc2dfcf1376dbefaf1ce68d7dfa
SHA1 hash: 31dc288bf5ce5de0b7d83a30ebf82b6615ec949c
SHA3-384 hash: b34f94c035f7f328c9cb0502aff05f7c37bf66c55e93147c1f3e982abf3aab5f9536276404aba7a1398f39d4db6119c7
First seen:2025-10-14 22:25:49 UTC
Last seen:Never
Sightings:1
imphash : 8d77f18f3b63c166bb11c06649d6cf7e
ssdeep : 12288:EJ3ULO2IiSvBKF2WerhpHOp2FvhbWfgH4xk9ZYpomKQ/L:gsO2mvMF2dhpHUqDEKAK
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon : 4d91d3f3d9cc750b

Tasks


There are 1 tasks on YARAify for this particular file. The 10 most recent ones are shown below.

Task Information


Task ID:bc6ace7e-a94c-11f0-adeb-42010aa4000b
File name:400000.f2a09b38-637a-4b12-8d8c-9c682987bdc1.exe
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:Borland
Author:malware-lu
TLP:TLP:WHITE
Repository:
Rule name:DebuggerCheck__API
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:DebuggerException__SetConsoleCtrl
Reference:https://github.com/naxonez/yaraRules/blob/master/AntiDebugging.yara
TLP:TLP:WHITE
Rule name:classified
Author:classified
Description:classified
Reference:classified
TLP :TLP:AMBER
Rule name:pe_detect_tls_callbacks
Author:
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.