YARAify Scan Results

You are viewing the YARAify database entry for the file with the SHA256 hash e1e7af1216ffb5269d41886906eebaf5aa1284b97daf8db54eb741fe163c50cd.

Scan Results


SHA256 hash: e1e7af1216ffb5269d41886906eebaf5aa1284b97daf8db54eb741fe163c50cd
File size:49'230 bytes
File download: Original
MIME type:application/x-dosexec
MD5 hash: a006d504b5ad2c76589a057167a7ec6d
SHA1 hash: 71831d9b645805530b762da4bad64d8790ab8dcc
SHA3-384 hash: 21153a7fac58d5999fa1aa5432749adbb3e1a44a91e137203a9b5c548f4e8552ba81f8d0c0be6e1a43558781b3888bca
First seen:2024-10-18 05:12:21 UTC
Last seen:2024-10-18 05:12:23 UTC
Sightings:2
imphash :n/a
ssdeep : 384:bPoMrSxcrPml8UIHZMZyWxjmi6A3rkEOeiNnj68xzeiExoKq7elmUMO:bPoEr9ZMZvxj0A3rk1eah47VllMO
TLSH :n/a
telfhash :n/a
gimphash :n/a
dhash icon :n/a

Tasks


You can browse the 10 most recent tasks associated with this file blow.

Task Information


Task ID:8ebd5b64-8d0f-11ef-b6ec-42010aa4000b
File name:2564_55332214115185102024
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Trojan.Xorer-14
Signature:Win.Trojan.Xorer-7

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:pe_no_import_table
Author:
Description:Detect pe file that no import table
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.

Task Information


Task ID:8e1699dc-8d0f-11ef-b6ec-42010aa4000b
File name:2564_55332214115185102024
Task parameters:ClamAV scan:True
Unpack:False
Share file:True

ClamAV Results


The file matched the following open source and commercial ClamAV rules.

Signature:Win.Trojan.Xorer-14
Signature:Win.Trojan.Xorer-7

YARA Results


Static Analysis

The following YARA rules matched on the file (static analysis).

Rule name:pe_no_import_table
Author:
Description:Detect pe file that no import table
TLP:TLP:WHITE
Repository:YARAify

Unpacker

The following YARA rules matched on the unpacked file.

Unpacked Files


The following files could be unpacked from this sample.