yara

Malware detection rules

A collection of YARA rules for detecting malware and suspicious activity in various environments.

Listing of YARA rules I wrote for Live and Retro hunts. Includes Jupyter infostealer, suspicious powershell, dll hijacking, vbs downloaders and maldocs.

GitHub

11 stars
2 watching
1 forks
Language: YARA
last commit: almost 3 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
bartblaze/yara-rulesA collection of Yara rules for detecting malware and other threats336
advanced-threat-research/yara-rulesA collection of rules to detect and prevent malware infections using YARA-based threat intelligence573
f0wl/yara_rulesA collection of YARA rules for malware analysis and threat intelligence10
h3x2b/yara-rulesRules and patterns used to identify malicious software23
jipegit/yara-rules-publicA collection of Yara rules for detecting malicious code and behavior11
mikesxrs/open-source-yara-rulesA collection of YARA rules for detecting malicious code patterns334
tenable/yara-rulesA curated collection of YARA rules for identifying and flagging malicious code and behavior.60
intezer/yara-rulesA repository of pre-defined YARA rules for detecting malware and other malicious software126
yara-rules/yara-endpointA tool used to scan files and assets for malware using Yara signatures, offering incident response capabilities.104
anyrun/yaraA collection of YARA rules designed to identify known malware and threats15
filescanio/fsyaraA collection of YARA rules for detecting malware and other malicious files.9
deadbits/yara-rulesA collection of YARA signatures used to detect and analyze malware43
fr0gger/yara-unprotectA collection of Yara rules for detecting malware evasion techniques and malicious activity.25
yara-silly-silly/yarasilly2Automatically generates YARA rules from sample files for malware analysis28
tillmannw/yara-rulesA collection of YARA rules for malware analysis and detection10