MalwareBazaar Database
This page shows some basic information the YARA rule SUSP_ENV_Folder_Root_File_Jan23_1 including corresponding malware samples.
Database Entry
| YARA Rule: | SUSP_ENV_Folder_Root_File_Jan23_1 |
|---|---|
| Author: | Florian Roth (Nextron Systems) |
| Description: | Detects suspicious file path pointing to the root of a folder easily accessible via environment variables |
| Firstseen: | 2023-03-01 10:17:04 UTC |
| Lastseen: | 2025-11-16 15:39:38 UTC |
| Sightings: | 182 |
Malware Samples
The table below shows all malware samples that matching this particular YARA rule (max 1000).
| Firstseen (UTC) | SHA256 hash | Tags | Signature | Reporter |
|---|