Signature Base unknown stable yara

Sofacy_CollectorStealer_Gen1 [yara]

Generic rule to detect Sofacy Malware Collector Stealer

View Source

Detection Logic

uint16(0) == 0x5a4d and filesize < 300KB and all of them

Field Validations

Loading…

Comments (0)

Loading comments...