
Rule Info
Name
APT_MAL_HemiGate_DLL_Loader_Sep23
Author
X__Junior, Marius Benthin
Description
Detects DLL that loads HemiGate backdoor
Score
80
Date
2023-09-12
Modified
2025-03-26
Minimum Yara
1.7
Rule Hash
deb3d4e97b6f01a4a26bd9fb3485e3a3
Tags
['MAL', 'APT', 'FILE']
Required Modules
[]
Antivirus Verdicts
Rating
Number of Samples
Malicious (>= 10 engines)
7
Suspicious (< 10 engines)
1
Clean (0 engines)
0
Rule Matches
Timestamp
Positives
Total
Hash
VT