Stats
- First seen
- July 2024
- Last seen
- July 2024
Description
Detects a portable executable (PE) header embedded inside another PE binary. Nested executables typically indicate a packed or dropper payload hiding a second stage, so this signature flags likely malware in transit.







