YARA unknown stable yara

update_PcInit [malware]

Chinese Hacktool Set - file PcInit.exe

View Source

Detection Logic

uint16(0) == 0x5a4d and filesize < 50KB and all of them

Field Validations

Loading…

Comments (0)

Loading comments...