Hi, what is the best way to create rule/rules to detect these suspicious libraries?  Would it be a rule for each library? Ref.: https://www.welivesecurity.com/2021/04/06/janeleiro-time-traveler-new-old-banking-trojan-brazil/
Hi,
what is the best way to create rule/rules to detect these suspicious libraries?
Would it be a rule for each library?
Ref.: https://www.welivesecurity.com/2021/04/06/janeleiro-time-traveler-new-old-banking-trojan-brazil/