Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
R
rules
Overview
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
fact-depend
rules
Commits
d3cb43e3
Commit
d3cb43e3
authored
6 years ago
by
Marc Rivero Lopez
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
regenrated index
parent
5cd16d32
Expand all
Show whitespace changes
Inline
Side-by-side
Showing
12 changed files
with
17 additions
and
11 deletions
+17
-11
Antidebug_AntiVM_index.yar
Antidebug_AntiVM_index.yar
+1
-1
CVE_Rules_index.yar
CVE_Rules_index.yar
+1
-1
Crypto_index.yar
Crypto_index.yar
+1
-1
Exploit-Kits_index.yar
Exploit-Kits_index.yar
+1
-1
Malicious_Documents_index.yar
Malicious_Documents_index.yar
+2
-2
Mobile_Malware_index.yar
Mobile_Malware_index.yar
+1
-1
Packers_index.yar
Packers_index.yar
+1
-1
Webshells_index.yar
Webshells_index.yar
+1
-1
email_index.yar
email_index.yar
+1
-1
index.yar
index.yar
+0
-0
index_w_mobile.yar
index_w_mobile.yar
+0
-0
malware_index.yar
malware_index.yar
+7
-1
No files found.
Antidebug_AntiVM_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Antidebug_AntiVM/antidebug_antivm.yar"
include "./Antidebug_AntiVM/antidebug_antivm.yar"
This diff is collapsed.
Click to expand it.
CVE_Rules_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0805.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
include "./CVE_Rules/CVE-2010-0887.yar"
...
...
This diff is collapsed.
Click to expand it.
Crypto_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Crypto/crypto_signatures.yar"
include "./Crypto/crypto_signatures.yar"
This diff is collapsed.
Click to expand it.
Exploit-Kits_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Exploit-Kits/EK_Angler.yar"
include "./Exploit-Kits/EK_Angler.yar"
include "./Exploit-Kits/EK_Blackhole.yar"
include "./Exploit-Kits/EK_Blackhole.yar"
...
...
This diff is collapsed.
Click to expand it.
Malicious_Documents_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Malicious_Documents/Maldoc_APT_OLE_JSRat.yar"
include "./Malicious_Documents/Maldoc_APT_OLE_JSRat.yar"
include "./Malicious_Documents/Maldoc_CVE-2017-0199.yar"
include "./Malicious_Documents/Maldoc_CVE-2017-0199.yar"
...
@@ -13,9 +13,9 @@ include "./Malicious_Documents/Maldoc_Hidden_PE_file.yar"
...
@@ -13,9 +13,9 @@ include "./Malicious_Documents/Maldoc_Hidden_PE_file.yar"
include "./Malicious_Documents/Maldoc_MIME_ActiveMime_b64.yar"
include "./Malicious_Documents/Maldoc_MIME_ActiveMime_b64.yar"
include "./Malicious_Documents/Maldoc_PDF.yar"
include "./Malicious_Documents/Maldoc_PDF.yar"
include "./Malicious_Documents/Maldoc_PowerPointMouse.yar"
include "./Malicious_Documents/Maldoc_PowerPointMouse.yar"
include "./Malicious_Documents/Maldoc_Suspicious_OLE_target.yar"
include "./Malicious_Documents/Maldoc_UserForm.yar"
include "./Malicious_Documents/Maldoc_UserForm.yar"
include "./Malicious_Documents/Maldoc_VBA_macro_code.yar"
include "./Malicious_Documents/Maldoc_VBA_macro_code.yar"
include "./Malicious_Documents/Maldoc_Word_2007_XML_Flat_OPC.yar"
include "./Malicious_Documents/Maldoc_Word_2007_XML_Flat_OPC.yar"
include "./Malicious_Documents/Maldoc_malrtf_ole2link.yar"
include "./Malicious_Documents/Maldoc_malrtf_ole2link.yar"
include "./Malicious_Documents/maldoc_somerules.yar"
include "./Malicious_Documents/maldoc_somerules.yar"
include "./Malicious_Documents/Maldoc_Suspicious_OLE_target.yar"
This diff is collapsed.
Click to expand it.
Mobile_Malware_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Mobile_Malware/Android_ASSDdeveloper.yar"
include "./Mobile_Malware/Android_ASSDdeveloper.yar"
include "./Mobile_Malware/Android_AVITOMMS.yar"
include "./Mobile_Malware/Android_AVITOMMS.yar"
...
...
This diff is collapsed.
Click to expand it.
Packers_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Packers/JJencode.yar"
include "./Packers/JJencode.yar"
include "./Packers/Javascript_exploit_and_obfuscation.yar"
include "./Packers/Javascript_exploit_and_obfuscation.yar"
...
...
This diff is collapsed.
Click to expand it.
Webshells_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./Webshells/WShell_APT_Laudanum.yar"
include "./Webshells/WShell_APT_Laudanum.yar"
include "./Webshells/WShell_PHP_Anuna.yar"
include "./Webshells/WShell_PHP_Anuna.yar"
...
...
This diff is collapsed.
Click to expand it.
email_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./email/EMAIL_Cryptowall.yar"
include "./email/EMAIL_Cryptowall.yar"
include "./email/attachment.yar"
include "./email/attachment.yar"
...
...
This diff is collapsed.
Click to expand it.
index.yar
View file @
d3cb43e3
This diff is collapsed.
Click to expand it.
index_w_mobile.yar
View file @
d3cb43e3
This diff is collapsed.
Click to expand it.
malware_index.yar
View file @
d3cb43e3
/*
/*
Generated by Yara-Rules
Generated by Yara-Rules
On 0
2-06
-2018
On 0
7-10
-2018
*/
*/
include "./malware/000_common_rules.yar"
include "./malware/000_common_rules.yar"
include "./malware/APT_APT1.yar"
include "./malware/APT_APT1.yar"
...
@@ -99,6 +99,7 @@ include "./malware/MALW_AgentTesla.yar"
...
@@ -99,6 +99,7 @@ include "./malware/MALW_AgentTesla.yar"
include "./malware/MALW_AgentTesla_SMTP.yar"
include "./malware/MALW_AgentTesla_SMTP.yar"
include "./malware/MALW_Alina.yar"
include "./malware/MALW_Alina.yar"
include "./malware/MALW_Andromeda.yar"
include "./malware/MALW_Andromeda.yar"
include "./malware/MALW_Arkei.yar"
include "./malware/MALW_Athena.yar"
include "./malware/MALW_Athena.yar"
include "./malware/MALW_Atmos.yar"
include "./malware/MALW_Atmos.yar"
include "./malware/MALW_BackdoorSSH.yar"
include "./malware/MALW_BackdoorSSH.yar"
...
@@ -242,6 +243,9 @@ include "./malware/MALW_Yayih.yar"
...
@@ -242,6 +243,9 @@ include "./malware/MALW_Yayih.yar"
include "./malware/MALW_Zegost.yar"
include "./malware/MALW_Zegost.yar"
include "./malware/MALW_Zeus.yar"
include "./malware/MALW_Zeus.yar"
include "./malware/MALW_adwind_RAT.yar"
include "./malware/MALW_adwind_RAT.yar"
include "./malware/MALW_kpot.yar"
include "./malware/MALW_marap.yar"
include "./malware/MALW_shifu_shiz.yar"
include "./malware/MALW_sitrof_fortis_scar.yar"
include "./malware/MALW_sitrof_fortis_scar.yar"
include "./malware/MALW_viotto_keylogger.yar"
include "./malware/MALW_viotto_keylogger.yar"
include "./malware/MALW_xDedic_marketplace.yar"
include "./malware/MALW_xDedic_marketplace.yar"
...
@@ -302,6 +306,7 @@ include "./malware/RANSOM_BadRabbit.yar"
...
@@ -302,6 +306,7 @@ include "./malware/RANSOM_BadRabbit.yar"
include "./malware/RANSOM_Cerber.yar"
include "./malware/RANSOM_Cerber.yar"
include "./malware/RANSOM_Comodosec.yar"
include "./malware/RANSOM_Comodosec.yar"
include "./malware/RANSOM_Crypren.yar"
include "./malware/RANSOM_Crypren.yar"
include "./malware/RANSOM_CryptoNar.yar"
include "./malware/RANSOM_Cryptolocker.yar"
include "./malware/RANSOM_Cryptolocker.yar"
include "./malware/RANSOM_DMALocker.yar"
include "./malware/RANSOM_DMALocker.yar"
include "./malware/RANSOM_DoublePulsar_Petya.yar"
include "./malware/RANSOM_DoublePulsar_Petya.yar"
...
@@ -356,6 +361,7 @@ include "./malware/TOOLKIT_Chinese_Hacktools.yar"
...
@@ -356,6 +361,7 @@ include "./malware/TOOLKIT_Chinese_Hacktools.yar"
include "./malware/TOOLKIT_Dubrute.yar"
include "./malware/TOOLKIT_Dubrute.yar"
include "./malware/TOOLKIT_FinFisher_.yar"
include "./malware/TOOLKIT_FinFisher_.yar"
include "./malware/TOOLKIT_Gen_powerkatz.yar"
include "./malware/TOOLKIT_Gen_powerkatz.yar"
include "./malware/TOOLKIT_Mandibule.yar"
include "./malware/TOOLKIT_PassTheHash.yar"
include "./malware/TOOLKIT_PassTheHash.yar"
include "./malware/TOOLKIT_Powerstager.yar"
include "./malware/TOOLKIT_Powerstager.yar"
include "./malware/TOOLKIT_Pwdump.yar"
include "./malware/TOOLKIT_Pwdump.yar"
...
...
This diff is collapsed.
Click to expand it.
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment