Common Information
Type Value
Value
rule shadowhammer_pdb {
	strings:
		$str_pdb = "AsusShellCode.pdb" ascii nocase
	condition:
		all of them
}
Category
Type Yara Rule
Misp Type
Description
Details Published Attributes CTI Title
Details Website 2019-03-29 24 A Hammer Lurking In The Shadows - F-Secure Blog