ConventionEngine
PDB path detector
Detects and identifies suspicious PDB paths in malware files using Yara rules.
ConventionEngine - A Yara Rulepack for PDB Path Hunting
37 stars
2 watching
9 forks
Language: YARA
last commit: over 3 years agoLinked from 1 awesome list
Related projects:
| Repository | Description | Stars |
|---|---|---|
| A collection of YARA rules for detecting malware and suspicious activity in various environments. | 11 | |
| An application backend designed to facilitate Yara rule analysis and root cause identification in malware detection. | 24 | |
| A centralized repository of Yara rules for detecting malware and other malicious activities. | 10 | |
| A collection of Yara rules for detecting malware and other threats | 336 | |
| Automates the creation of Yara rules to detect malware and other malicious objects of interest by analyzing sample files from various sources. | 332 | |
| Yara rules for identifying malware families in targeted threats | 134 | |
| Rules and patterns used to identify malicious software | 23 | |
| Manages YARA rules and C2 artifacts in a knowledge base workflow | 96 | |
| A collection of Yara rules for detecting malicious code and behavior | 11 | |
| A collection of YARA rules for detecting malicious code patterns | 334 | |
| A collection of Yara rules for detecting malware and other malicious patterns | 52 | |
| Provides Yara rules to identify malicious software in web applications | 44 | |
| A web application for analyzing Yara rules and inspecting malware files | 37 | |
| Automated malware scanning tool for containers and filesystems using YARA ruleset | 1,275 | |
| A tool to scan node modules for malicious scripts by applying YARA rules | 20 |