Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
R
rules
Overview
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
fact-depend
rules
Commits
306feaef
Commit
306feaef
authored
Jul 01, 2017
by
Jaume Martin
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
Moved Crypto/base64.yar to utils/base64.yar according to #239 and regenerated the index
parent
2f35228c
Hide whitespace changes
Inline
Side-by-side
Showing
13 changed files
with
24 additions
and
15 deletions
+24
-15
Antidebug_AntiVM_index.yar
Antidebug_AntiVM_index.yar
+1
-1
CVE_Rules_index.yar
CVE_Rules_index.yar
+1
-1
Crypto_index.yar
Crypto_index.yar
+1
-2
Exploit-Kits_index.yar
Exploit-Kits_index.yar
+1
-1
Malicious_Documents_index.yar
Malicious_Documents_index.yar
+1
-1
Mobile_Malware_index.yar
Mobile_Malware_index.yar
+1
-1
Packers_index.yar
Packers_index.yar
+1
-1
Webshells_index.yar
Webshells_index.yar
+1
-1
email_index.yar
email_index.yar
+1
-1
index.yar
index.yar
+5
-2
index_w_mobile.yar
index_w_mobile.yar
+5
-2
malware_index.yar
malware_index.yar
+5
-1
base64.yar
utils/base64.yar
+0
-0
No files found.
Antidebug_AntiVM_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Antidebug_AntiVM/antidebug_antivm.yar"
CVE_Rules_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
...
...
Crypto_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Crypto/base64.yar"
include "./Crypto/crypto_signatures.yar"
Exploit-Kits_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Exploit-Kits/EK_Angler.yar"
include "./Exploit-Kits/EK_Blackhole.yar"
...
...
Malicious_Documents_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Malicious_Documents/Maldoc_APT_OLE_JSRat.yar"
include "./Malicious_Documents/Maldoc_Contains_VBE_File.yar"
...
...
Mobile_Malware_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Mobile_Malware/Android_adware.yar"
include "./Mobile_Malware/Android_AliPay_smsStealer.yar"
...
...
Packers_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Packers/Javascript_exploit_and_obfuscation.yar"
include "./Packers/JJencode.yar"
...
...
Webshells_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Webshells/WShell_APT_Laudanum.yar"
include "./Webshells/Wshell_ChineseSpam.yar"
...
...
email_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./email/attachment.yar"
include "./email/bank_rule.yar"
...
...
index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Antidebug_AntiVM/antidebug_antivm.yar"
include "./Crypto/base64.yar"
include "./Crypto/crypto_signatures.yar"
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
...
...
@@ -74,6 +73,7 @@ include "./malware/APT_eqgrp_apr17.yar"
include "./malware/APT_Equation.yar"
include "./malware/APT_EQUATIONGRP.yar"
include "./malware/APT_fancybear_dnc.yar"
include "./malware/APT_fancybear_downdelph.yar"
include "./malware/APT_FiveEyes.yar"
include "./malware/APT_furtim.yar"
include "./malware/APT_FVEY_ShadowBrokers_Jan17_Screen_Strings.yar"
...
...
@@ -191,6 +191,7 @@ include "./malware/MALW_Lateral_Movement.yar"
include "./malware/MALW_Lenovo_Superfish.yar"
include "./malware/MALW_LinuxMoose.yar"
include "./malware/MALW_LostDoor.yar"
include "./malware/MALW_LuaBot.yar"
include "./malware/MALW_LuckyCat.yar"
include "./malware/MALW_LURK0.yar"
include "./malware/MALW_MacControl.yar"
...
...
@@ -313,9 +314,11 @@ include "./malware/RANSOM_Comodosec.yar"
include "./malware/RANSOM_Crypren.yar"
include "./malware/RANSOM_Cryptolocker.yar"
include "./malware/RANSOM_DMALocker.yar"
include "./malware/RANSOM_Erebus.yar"
include "./malware/RANSOM_GoldenEye.yar"
include "./malware/RANSOM_Locky.yar"
include "./malware/RANSOM_MS17-010_Wannacrypt.yar"
include "./malware/RANSOM_PetrWrap.yar"
include "./malware/RANSOM_Petya.yar"
include "./malware/RANSOM_Satana.yar"
include "./malware/RANSOM_Stampado.yar"
...
...
index_w_mobile.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./Antidebug_AntiVM/antidebug_antivm.yar"
include "./Crypto/base64.yar"
include "./Crypto/crypto_signatures.yar"
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
...
...
@@ -74,6 +73,7 @@ include "./malware/APT_eqgrp_apr17.yar"
include "./malware/APT_Equation.yar"
include "./malware/APT_EQUATIONGRP.yar"
include "./malware/APT_fancybear_dnc.yar"
include "./malware/APT_fancybear_downdelph.yar"
include "./malware/APT_FiveEyes.yar"
include "./malware/APT_furtim.yar"
include "./malware/APT_FVEY_ShadowBrokers_Jan17_Screen_Strings.yar"
...
...
@@ -191,6 +191,7 @@ include "./malware/MALW_Lateral_Movement.yar"
include "./malware/MALW_Lenovo_Superfish.yar"
include "./malware/MALW_LinuxMoose.yar"
include "./malware/MALW_LostDoor.yar"
include "./malware/MALW_LuaBot.yar"
include "./malware/MALW_LuckyCat.yar"
include "./malware/MALW_LURK0.yar"
include "./malware/MALW_MacControl.yar"
...
...
@@ -313,9 +314,11 @@ include "./malware/RANSOM_Comodosec.yar"
include "./malware/RANSOM_Crypren.yar"
include "./malware/RANSOM_Cryptolocker.yar"
include "./malware/RANSOM_DMALocker.yar"
include "./malware/RANSOM_Erebus.yar"
include "./malware/RANSOM_GoldenEye.yar"
include "./malware/RANSOM_Locky.yar"
include "./malware/RANSOM_MS17-010_Wannacrypt.yar"
include "./malware/RANSOM_PetrWrap.yar"
include "./malware/RANSOM_Petya.yar"
include "./malware/RANSOM_Satana.yar"
include "./malware/RANSOM_Stampado.yar"
...
...
malware_index.yar
View file @
306feaef
/*
Generated by Yara-Rules
On
14-06
-2017
On
01-07
-2017
*/
include "./malware/APT_APT1.yar"
include "./malware/APT_APT10.yar"
...
...
@@ -30,6 +30,7 @@ include "./malware/APT_eqgrp_apr17.yar"
include "./malware/APT_Equation.yar"
include "./malware/APT_EQUATIONGRP.yar"
include "./malware/APT_fancybear_dnc.yar"
include "./malware/APT_fancybear_downdelph.yar"
include "./malware/APT_FiveEyes.yar"
include "./malware/APT_furtim.yar"
include "./malware/APT_FVEY_ShadowBrokers_Jan17_Screen_Strings.yar"
...
...
@@ -147,6 +148,7 @@ include "./malware/MALW_Lateral_Movement.yar"
include "./malware/MALW_Lenovo_Superfish.yar"
include "./malware/MALW_LinuxMoose.yar"
include "./malware/MALW_LostDoor.yar"
include "./malware/MALW_LuaBot.yar"
include "./malware/MALW_LuckyCat.yar"
include "./malware/MALW_LURK0.yar"
include "./malware/MALW_MacControl.yar"
...
...
@@ -269,9 +271,11 @@ include "./malware/RANSOM_Comodosec.yar"
include "./malware/RANSOM_Crypren.yar"
include "./malware/RANSOM_Cryptolocker.yar"
include "./malware/RANSOM_DMALocker.yar"
include "./malware/RANSOM_Erebus.yar"
include "./malware/RANSOM_GoldenEye.yar"
include "./malware/RANSOM_Locky.yar"
include "./malware/RANSOM_MS17-010_Wannacrypt.yar"
include "./malware/RANSOM_PetrWrap.yar"
include "./malware/RANSOM_Petya.yar"
include "./malware/RANSOM_Satana.yar"
include "./malware/RANSOM_Stampado.yar"
...
...
Crypto
/base64.yar
→
utils
/base64.yar
View file @
306feaef
File moved
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment