YaraGen

Basic Block Analyzer

Generates Yara rules from function basic blocks in debugged binary images

Plugin for x64dbg to generate Yara rules from function basic blocks.

GitHub

35 stars
6 watching
7 forks
Language: C
last commit: about 9 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
dissectmalware/yaradbg-backendAn application backend designed to facilitate Yara rule analysis and root cause identification in malware detection.24
xen0ph0n/yarageneratorAutomates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources.332
neo23x0/yargenGenerates YARA rules from malware strings while excluding goodware strings and optionally refines the rules for AI use.1,569
yara-silly-silly/yarasilly2Automatically generates YARA rules from sample files for malware analysis28
malgamy/yara_rulesA collection of Yara rules for identifying and classifying files based on their characteristics.64
fxb-cocacoding/java2yaraA Java library to generate YARA rules from Java classes3
efforg/yayaAutomates the curation and scanning of Yara rules using a command-line interface.269
neo23x0/yaranalyzerAnalyzes and reports on Yara rules and files362
sophos/yaraml_rulesAutomates the creation of Yara rules from machine learning models trained on malware and benign samples.214
nccgroup/yaml2yaraAutomated generation of YARA rules from YAML input data22
michelcrypt4d4mus/yaralyzerAnalyzes binary and text data for YARA and regex matches, visualizes results with colors, and attempts to decode matched regions109
fxb-cocacoding/yara-signatorAutomatically generates YARA signatures for malware based on disassembly reports and curated malware repository157
matonis/yara_toolsA Python library for creating YARA rules with automated features.72
jimmy-sonny/yayagenAn automatic procedure to generate YARA rules from a set of malware reports62
stellarbear/yarasharpA C# wrapper around the Yara pattern matching library for detecting malware and analyzing binaries36