imp0rtp3 / yara-rules
Yara rules written by me, for free use.
☆18Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for yara-rules
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated 9 months ago
- This repository regroups the Yara Rules for the Unprotect Project☆25Updated 4 years ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- ☆31Updated 2 years ago
- ☆12Updated 3 years ago
- Parser for Sdba memory pool tags☆17Updated 3 years ago
- D-Scan project for office document analysis and generating flow diagram of macro in documents. For demo visit☆29Updated last week
- Generates YARA rules to detect malware using API hashing☆17Updated 3 years ago
- Emulates the VirusTotal "vt" YARA module for livehunt rule debugging/testing☆21Updated last year
- Yara rules☆20Updated last year
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 5 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- Threat Feeds, Threat lists, and regular lists of known IP ranges and domains. It updates every 4 hours.☆15Updated 3 years ago
- ☆34Updated last year
- ☆14Updated last year
- Conceptual Methods for Finding Commonalities in Macho Files☆12Updated 8 months ago
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- A Modular MWDB Utility to Collect Fresh Malware Samples☆34Updated 3 years ago
- Modular malware analysis artifact collection and correlation framework☆53Updated 7 months ago
- A collection of my public YARA signatures for various malware families☆29Updated 2 months ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆20Updated 2 years ago
- ☆23Updated last year
- Converts Sigma detection rules to a Splunk alert configuration.☆13Updated 3 years ago
- A tool to help malware analysts signature unique parts of RTF documents☆29Updated 9 months ago
- A collection of Indicators of Compromise (IoCs), most aligning with samples derived from the signatures in the YARA-Signatures repo☆30Updated 4 years ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆32Updated 3 months ago
- Steezy - Ghetto Yara Generation☆15Updated last year
- Python wrappers for mal_unpack☆34Updated last year