Commit 9864ba5c by mmorenog Committed by GitHub

Update and rename malware/APT_Danti_svcmondr.yar to CVE_Rules/CVE-2015-2545.yar

parent 19c2d036
......@@ -58,7 +58,7 @@ rule Mal_http_EXE : Trojan {
( uint16(0) == 0x5a4d and filesize < 2000KB and ( 1 of ($x*) and 2 of ($s*) ) ) or ( 3 of ($x*) )
}
rule Mal_PotPlayer_DLL {
rule Mal_PotPlayer_DLL : dll {
meta:
description = "Detects a malicious PotPlayer.dll"
author = "Florian Roth"
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment