Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
R
rules
Overview
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
fact-depend
rules
Commits
4a8ec393
Commit
4a8ec393
authored
Oct 06, 2016
by
Xumeiquer
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
Updating index and index_gen.sh
parent
5bf51ab3
Expand all
Hide whitespace changes
Inline
Side-by-side
Showing
12 changed files
with
77 additions
and
74 deletions
+77
-74
Antidebug_AntiVM_index.yar
Antidebug_AntiVM_index.yar
+1
-1
CVE_Rules_index.yar
CVE_Rules_index.yar
+6
-6
Crypto_index.yar
Crypto_index.yar
+2
-2
Exploit-Kits_index.yar
Exploit-Kits_index.yar
+6
-6
Malicious_Documents_index.yar
Malicious_Documents_index.yar
+6
-6
Mobile_Malware_index.yar
Mobile_Malware_index.yar
+43
-40
Packers_index.yar
Packers_index.yar
+4
-4
Webshells_index.yar
Webshells_index.yar
+4
-4
email_index.yar
email_index.yar
+4
-4
index.yar
index.yar
+0
-0
index_gen.sh
index_gen.sh
+1
-1
malware_index.yar
malware_index.yar
+0
-0
No files found.
Antidebug_AntiVM_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Antidebug_AntiVM/antidebug_antivm.yar"
CVE_Rules_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./CVE_Rules/CVE-2015-2426.yar"
include "./CVE_Rules/CVE-2010-1297.yar"
include "./CVE_Rules/CVE-2015-2545.yar"
include "./CVE_Rules/CVE-2013-0422.yar"
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
include "./CVE_Rules/CVE-2010-1297.yar"
include "./CVE_Rules/CVE-2013-0074.yar"
include "./CVE_Rules/CVE-2013-0422.yar"
include "./CVE_Rules/CVE-2015-1701.yar"
include "./CVE_Rules/CVE-2015-2426.yar"
include "./CVE_Rules/CVE-2015-2545.yar"
include "./CVE_Rules/CVE-2015-5119.yar"
include "./CVE_Rules/CVE-2010-0805.yar"
Crypto_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Crypto/crypto_signatures.yar"
include "./Crypto/base64.yar"
include "./Crypto/crypto_signatures.yar"
Exploit-Kits_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Exploit-Kits/EK_Zeus.yar"
include "./Exploit-Kits/EK_Fragus.yar"
include "./Exploit-Kits/EK_Angler.yar"
include "./Exploit-Kits/EK_Blackhole.yar"
include "./Exploit-Kits/EK_BleedingLife.yar"
include "./Exploit-Kits/EK_Crimepack.yar"
include "./Exploit-Kits/EK_Eleonore.yar"
include "./Exploit-Kits/EK_Zerox88.yar"
include "./Exploit-Kits/EK_Angler.yar"
include "./Exploit-Kits/EK_Fragus.yar"
include "./Exploit-Kits/EK_Phoenix.yar"
include "./Exploit-Kits/EK_Crimepack.yar"
include "./Exploit-Kits/EK_Sakura.yar"
include "./Exploit-Kits/EK_ZeroAcces.yar"
include "./Exploit-Kits/EK_Zerox88.yar"
include "./Exploit-Kits/EK_Zeus.yar"
Malicious_Documents_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Malicious_Documents/Maldoc_UserForm.yar"
include "./Malicious_Documents/Maldoc_APT_OLE_JSRat.yar"
include "./Malicious_Documents/Maldoc_Contains_VBE_File.yar"
include "./Malicious_Documents/Maldoc_Dridex.yar"
include "./Malicious_Documents/Maldoc_Hidden_PE_file.yar"
include "./Malicious_Documents/Maldoc_MIME_ActiveMime_b64.yar"
include "./Malicious_Documents/Maldoc_PDF.yar"
include "./Malicious_Documents/Maldoc_Contains_VBE_File.yar"
include "./Malicious_Documents/Maldoc_VBA_macro_code.yar"
include "./Malicious_Documents/maldoc_somerules.yar"
include "./Malicious_Documents/Maldoc_
APT_OLE_JSRat
.yar"
include "./Malicious_Documents/Maldoc_
MIME_ActiveMime_b64
.yar"
include "./Malicious_Documents/Maldoc_
UserForm
.yar"
include "./Malicious_Documents/Maldoc_
VBA_macro_code
.yar"
Mobile_Malware_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Mobile_Malware/Android_Spywaller.yar"
include "./Mobile_Malware/Android_generic_adware.yar"
include "./Mobile_Malware/Android_AVITOMMS.yar"
include "./Mobile_Malware/Android_VikingOrder.yar"
include "./Mobile_Malware/Android_malware_banker.yar"
include "./Mobile_Malware/Android_adware.yar"
include "./Mobile_Malware/Android_AliPay_smsStealer.yar"
include "./Mobile_Malware/Android_
SpyAgent
.yar"
include "./Mobile_Malware/Android_
Malware_Tinhvan
.yar"
include "./Mobile_Malware/Android_
malware_xbot007
.yar"
include "./Mobile_Malware/Android_
Dendroid_RAT
.yar"
include "./Mobile_Malware/Android_
Amtrckr_20160519
.yar"
include "./Mobile_Malware/Android_
ASSDdeveloper
.yar"
include "./Mobile_Malware/Android_
AVITOMMS
.yar"
include "./Mobile_Malware/Android_
Backdoor
.yar"
include "./Mobile_Malware/Android_BadMirror.yar"
include "./Mobile_Malware/Android_Dectus_rswm.yar"
include "./Mobile_Malware/Android_BatteryBot_ClickFraud.yar"
include "./Mobile_Malware/Android_Clicker_G.yar"
include "./Mobile_Malware/Android_Copy9.yar"
include "./Mobile_Malware/Android_DeathRing.yar"
include "./Mobile_Malware/Android_malware_ChinesePorn.yar"
include "./Mobile_Malware/Android_Triada_Banking.yar"
include "./Mobile_Malware/Android_Dectus_rswm.yar"
include "./Mobile_Malware/Android_Dendroid_RAT.yar"
include "./Mobile_Malware/Android_Dogspectus.yar"
include "./Mobile_Malware/Android_FakeApps.yar"
include "./Mobile_Malware/Android_FakeBank_Fanta.yar"
include "./Mobile_Malware/Android_generic_adware.yar"
include "./Mobile_Malware/Android_generic_smsfraud.yar"
include "./Mobile_Malware/Android_Godless.yar"
include "./Mobile_Malware/Android_Pink_Locker.yar"
include "./Mobile_Malware/Android_SpyNote.yar"
include "./Mobile_Malware/Android_Libyan_Scorpions.yar"
include "./Mobile_Malware/Android_malware_Advertising.yar"
include "./Mobile_Malware/Android_malware_banker.yar"
include "./Mobile_Malware/Android_malware_ChinesePorn.yar"
include "./Mobile_Malware/Android_malware_Dropper.yar"
include "./Mobile_Malware/Android_malware_Fake_MosKow.yar"
include "./Mobile_Malware/Android_malware_HackingTeam.yar"
include "./Mobile_Malware/Android_FakeBank_Fanta.yar"
include "./Mobile_Malware/Android_mapin.yar"
include "./Mobile_Malware/Android_pornClicker.yar"
include "./Mobile_Malware/Android_Malware_Ramsonware.yar"
include "./Mobile_Malware/Android_malware_SMSsender.yar"
include "./Mobile_Malware/Android_
ASSDdeveloper
.yar"
include "./Mobile_Malware/Android_
Overlayer
.yar"
include "./Mobile_Malware/A
mtrckr_20160519
.yar"
include "./Mobile_Malware/Android_
Malware_Tinhvan
.yar"
include "./Mobile_Malware/Android_
Malware_Towelroot
.yar"
include "./Mobile_Malware/A
ndroid_malware_xbot007
.yar"
include "./Mobile_Malware/Android_MalwareCertificates.yar"
include "./Mobile_Malware/Android_generic_smsfraud.yar"
include "./Mobile_Malware/Android_SandroRat.yar"
include "./Mobile_Malware/Android_mapin.yar"
include "./Mobile_Malware/Android_Marcher_2.yar"
include "./Mobile_Malware/Android_MazarBot_z.yar"
include "./Mobile_Malware/Android_Metasploit.yar"
include "./Mobile_Malware/Android_OmniRat.yar"
include "./Mobile_Malware/Android_malware_Dropper.yar"
include "./Mobile_Malware/Android_Overlayer.yar"
include "./Mobile_Malware/Android_Pink_Locker.yar"
include "./Mobile_Malware/Android_pornClicker.yar"
include "./Mobile_Malware/Android_RuMMS.yar"
include "./Mobile_Malware/Android_
Malware_Ramsonware
.yar"
include "./Mobile_Malware/Android_
VirusPolicia
.yar"
include "./Mobile_Malware/Android_
MazarBot_z
.yar"
include "./Mobile_Malware/Android_
SandroRat
.yar"
include "./Mobile_Malware/Android_
sk_bankTr
.yar"
include "./Mobile_Malware/Android_
SlemBunk
.yar"
include "./Mobile_Malware/Android_SMSFraud.yar"
include "./Mobile_Malware/Android_Marcher_2.yar"
include "./Mobile_Malware/Android_adware.yar"
include "./Mobile_Malware/Android_SpyAgent.yar"
include "./Mobile_Malware/Android_Spynet.yar"
include "./Mobile_Malware/Android_malware_Advertising.yar"
include "./Mobile_Malware/Android_SpyNote.yar"
include "./Mobile_Malware/Android_Spywaller.yar"
include "./Mobile_Malware/Android_Tachi.yar"
include "./Mobile_Malware/Android_Clicker_G.yar"
include "./Mobile_Malware/Android_Malware_Towelroot.yar"
include "./Mobile_Malware/Android_malware_Fake_MosKow.yar"
include "./Mobile_Malware/Android_Backdoor.yar"
include "./Mobile_Malware/Android_FakeApps.yar"
include "./Mobile_Malware/Android_SlemBunk.yar"
include "./Mobile_Malware/Android_Metasploit.yar"
include "./Mobile_Malware/Android_BatteryBot_ClickFraud.yar"
include "./Mobile_Malware/Android_Copy9.yar"
include "./Mobile_Malware/Android_Dogspectus.yar"
include "./Mobile_Malware/Android_Tordow.yar"
include "./Mobile_Malware/Android_Triada_Banking.yar"
include "./Mobile_Malware/Android_VikingOrder.yar"
include "./Mobile_Malware/Android_VirusPolicia.yar"
Packers_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Packers/
peid
.yar"
include "./Packers/
Javascript_exploit_and_obfuscation
.yar"
include "./Packers/JJencode.yar"
include "./Packers/packer_compiler_signatures.yar"
include "./Packers/packer.yar"
include "./Packers/Javascript_exploit_and_obfuscation.yar"
include "./Packers/packer_compiler_signatures.yar"
include "./Packers/peid.yar"
Webshells_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./Webshells/WShell_APT_Laudanum.yar"
include "./Webshells/WShell_PHP_Anuna.yar"
include "./Webshells/WShell_THOR_Webshells.yar"
include "./Webshells/Wshell_ChineseSpam.yar"
include "./Webshells/Wshell_fire2013.yar"
include "./Webshells/WShell_PHP_Anuna.yar"
include "./Webshells/WShell_PHP_in_images.yar"
include "./Webshells/W
shell_ChineseSpam
.yar"
include "./Webshells/W
Shell_THOR_Webshells
.yar"
email_index.yar
View file @
4a8ec393
/*
Generated by Yara-Rules
On
14-09
-2016
On
06-10
-2016
*/
include "./email/attachment.yar"
include "./email/bank_rule.yar"
include "./email/EMAIL_Cryptowall.yar"
include "./email/email_Ukraine_BE_powerattack.yar"
include "./email/image.yar"
include "./email/attachment.yar"
include "./email/scam.yar"
include "./email/urls.yar"
include "./email/EMAIL_Cryptowall.yar"
include "./email/bank_rule.yar"
index.yar
View file @
4a8ec393
This diff is collapsed.
Click to expand it.
index_gen.sh
View file @
4a8ec393
...
...
@@ -2,7 +2,7 @@
function
get_folders
{
local
INDECES
=()
for
folder
in
$(
ls
-d
*
/
)
;
do
for
folder
in
$(
ls
-d
*
/
|
grep
-v
utils
)
;
do
INDECES+
=
"
$folder
"
done
INDECES+
=
". "
...
...
malware_index.yar
View file @
4a8ec393
This diff is collapsed.
Click to expand it.
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment