Windows_Trojan_Smokeloader_4e31426e
Description
Windows.Trojan.Smokeloader
Query · yara
strings:
$a = { 5B 81 EB 34 10 00 00 6A 30 58 64 8B 00 8B 40 0C 8B 40 1C 8B 40 08 89 85 C0 }
condition:
all of them
Windows.Trojan.Smokeloader
strings:
$a = { 5B 81 EB 34 10 00 00 6A 30 58 64 8B 00 8B 40 0C 8B 40 1C 8B 40 08 89 85 C0 }
condition:
all of them
Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.