Rule Info
Name
MAL_MSIL_NET_DuckTail_Stealer_Loader_Jun23
Author
dr4k0nia
Description
Detects DuckTail stealer .NET loader
Score
80
Date
2023-06-16
Modified
2026-02-10
Minimum Yara
3.5.0
Rule Hash
4bfa8d3bae06b77da8133be739f126c6
Tags
['FILE', 'EXE', 'MAL']
Required Modules
[]
Antivirus Verdicts
Rating
Number of Samples
Malicious (>= 10 engines)
1
Suspicious (< 10 engines)
0
Clean (0 engines)
0
