MalwareBazaar Database

This page shows some basic information the YARA rule BAT_Begin_Substring_Env including corresponding malware samples.

Database Entry


YARA Rule:BAT_Begin_Substring_Env
Author:marcin@ulikowski.pl
Description:Detects suspicious substring syntax at the begining of batch script
Firstseen:2023-07-27 02:44:26 UTC
Lastseen:2026-02-02 08:28:31 UTC
Sightings:2

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter