MalwareBazaar Database
This page shows some basic information the YARA rule gen_unicorn_obfuscated_powershell including corresponding malware samples.
Database Entry
| YARA Rule: | gen_unicorn_obfuscated_powershell |
|---|---|
| Author: | John Lambert @JohnLaTwC |
| Description: | PowerShell payload obfuscated by Unicorn toolkit |
| Firstseen: | 2023-03-06 17:36:29 UTC |
| Lastseen: | 2024-11-19 11:17:15 UTC |
| Sightings: | 4 |
Malware Samples
The table below shows all malware samples that matching this particular YARA rule (max 1000).
| Firstseen (UTC) | SHA256 hash | Tags | Signature | Reporter |
|---|