MalwareBazaar Database

This page shows some basic information the YARA rule globalnet_files including corresponding malware samples.

Database Entry


YARA Rule:globalnet_files
Author:vmovupd
Description:Detect PE files compiled with PyInstaller with AntiDecompilation string. Observed in GlobalNet botnet campaign.
Firstseen:2024-01-31 12:50:17 UTC
Lastseen:2024-01-31 12:50:46 UTC
Sightings:3

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter