ConventionEngine

PDB path detector

Detects and identifies suspicious PDB paths in malware files using Yara rules.

ConventionEngine - A Yara Rulepack for PDB Path Hunting

GitHub

37 stars
2 watching
9 forks
Language: YARA
last commit: over 3 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
securitymagic/yaraA collection of YARA rules for detecting malware and suspicious activity in various environments.11
dissectmalware/yaradbg-backendAn application backend designed to facilitate Yara rule analysis and root cause identification in malware detection.24
neo23x0/rulesA centralized repository of Yara rules for detecting malware and other malicious activities.10
bartblaze/yara-rulesA collection of Yara rules for detecting malware and other threats336
xen0ph0n/yarageneratorAutomates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources.332
citizenlab/malware-signaturesYara rules for identifying malware families in targeted threats134
h3x2b/yara-rulesRules and patterns used to identify malicious software23
inquest/threatkbManages YARA rules and C2 artifacts in a knowledge base workflow96
jipegit/yara-rules-publicA collection of Yara rules for detecting malicious code and behavior11
mikesxrs/open-source-yara-rulesA collection of YARA rules for detecting malicious code patterns334
kevthehermit/yararulesA collection of Yara rules for detecting malware and other malicious patterns52
codewatchorg/burp-yara-rulesProvides Yara rules to identify malicious software in web applications44
dissectmalware/yaradbg-frontendA web application for analyzing Yara rules and inspecting malware files37
deepfence/yarahunterAutomated malware scanning tool for containers and filesystems using YARA ruleset1,275
rpgeeganage/audit-node-modules-with-yaraA tool to scan node modules for malicious scripts by applying YARA rules20