Unknown
Unsigned ZIP archive with zero engine detections but submitted only once today.
273cf1a88c15e78b5a…8a464ebe66The reasoning behind this verdict
The MT AI Engine weighs every signal from this scan — antivirus detections, sandbox behaviour, code signing, prevalence and historical matches — to reach a single, evidence-based verdict.
Zero malicious flags across tier-1 and tier-2 engines combined with clean external intel strongly suggests the archive is not known malware. The complete lack of prior submissions and unsigned status prevent a confident clean classification. Low coverage on a newly submitted portable archive format leads to an unknown verdict rather than guessing safety.
Each signal cites a concrete token from the evidence the arbiter saw — engine name, MITRE technique, signer string, or an exact count.
engines.malicious=0 with tier1Malicious=0 across 63 reporting engines
prevalence.classification=rare_new and file.ageDays=0
filenameAnalysis.looksLikePortable=true with hasNumericVersion=true
externalIntel.yaraify.ruleCount=0 and no triggeredHeuristics
- zero malicious engine detections
- no external intelligence hits
- no triggered heuristics
- rare_new prevalence with single submission
- unsigned archive
Treat as unverified until the contents can be inspected or the source confirmed; re-scan after extraction.
What to do now
There isn't enough information to give this file a clear rating.
Be cautious — an unknown rating is not the same as a clean bill of health.
Only run it if it came directly from the official maker of the software.
When in doubt, don't open it — or scan it again later once it's more widely seen.
0 detections across 74 engines
How widely this file has been seen
Barely seen in the wild and first surfaced recently. This is the footprint of targeted malware the AV industry hasn't signatured yet — extra scrutiny is warranted.
Forensic fingerprint
- File name
- Paracord-0.9.0.zip
- Size
- 1.24 MB
- MIME type
- application/zip
- Detected type
- ZIP
- SHA-256
- 273cf1a88c15e78b5ae43868b60dee9bd729fa49a3ce2eb60d160d8a464ebe66
- MD5
- 194eb594aa37b976a1afd43e5587dd0d
- SHA-1
- 8f524d07ad691861710e1242ef36295dd67d9d9e
- First seen (VT)
- 7/9/2026, 10:32:24 PM
- Last analysis (VT)
- 7/9/2026, 10:32:24 PM
- First scan (MalwareTips)
- 7/9/2026, 10:33:38 PM
- Last scan (MalwareTips)
- 7/9/2026, 10:35:42 PM
Safety FAQ
Common questions about Paracord-0.9.0.zip, answered from the scan data above.
- We can't give Paracord-0.9.0.zip a confident verdict yet — too few engines have an opinion on this exact file. Uncommon or brand-new files often show little coverage before vendors catch up, so treat it as untrusted: don't opened or extracted it unless you're certain of the source.
- Paracord-0.9.0.zip is a compressed archive (application/zip), about 1.2 MB. We identify a file by its cryptographic hash rather than its name, because the same filename can be reused by completely different files — the hash below is the reliable fingerprint.
- None — all 74 antivirus engines we queried report Paracord-0.9.0.zip as clean. That's reassuring, though brand-new malware can briefly evade detection before vendors add signatures, so we also weigh the file's behaviour and reputation.
- The SHA-256 hash of Paracord-0.9.0.zip is 273cf1a88c15e78b5ae43868b60dee9bd729fa49a3ce2eb60d160d8a464ebe66, and its MD5 is 194eb594aa37b976a1afd43e5587dd0d. This hash is the file's unique fingerprint — two files with the same SHA-256 are identical. Use it to confirm you're looking at exactly this file (not just one with the same name) when comparing against antivirus databases or a download's published checksum.
- This report reflects the scan run on July 9, 2026. Because a file's hash never changes, the identity of Paracord-0.9.0.zip is fixed — but antivirus coverage improves over time, so a file that looks clean today can pick up detections later (and vice-versa). If you need the latest picture, MalwareTips staff can re-run the analysis from scratch.
Reviews & malware reports(0)
Tell the community what you saw. Tag the sample — Trojan, Adware, False Positive — and share what the file did on your system. Your report helps confirm or dispute the AV verdict.