MalwareBazaar Database

This page shows some basic information the YARA rule DefenderControl including corresponding malware samples.

Database Entry


YARA Rule:DefenderControl
Author:@bartblaze
Description:Identifies Defender Control, used by attackers to disable Windows Defender.
Firstseen:2022-03-23 09:13:35 UTC
Lastseen:2025-05-20 17:05:41 UTC
Sightings:7

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter