MalwareBazaar Database
This page shows some basic information the YARA rule OBFUS_PowerShell_Common_Replace including corresponding malware samples.
Database Entry
| YARA Rule: | OBFUS_PowerShell_Common_Replace |
|---|---|
| Author: | SECUINFRA Falcon Team |
| Description: | Detects the common usage of replace for obfuscation |
| Firstseen: | 2022-03-08 17:18:24 UTC |
| Lastseen: | 2025-12-15 10:40:40 UTC |
| Sightings: | 336 |
Malware Samples
The table below shows all malware samples that matching this particular YARA rule (max 1000).
| Firstseen (UTC) | SHA256 hash | Tags | Signature | Reporter |
|---|