├── AMOS ├── amos_stealer.yar └── amos_stealer_4_25.yar ├── AndeLoader └── ande_loader.yar ├── AsukaStealer └── mal_asuka_stealer.yar ├── AtomicStealer └── Atomic_Stealer.yar ├── AuroraStealer ├── AuroraStealer.yar └── Aurora_March_2023.yar ├── BanditStealer └── bandit_stealer.yar ├── CleanUpLoader └── mal_cleanuploader.yar ├── DanaBot └── danabot_yara.yar ├── DarkGate └── darkgate_autoit.yar ├── DarkVNC └── darkvnc.yar ├── Ducktail ├── Ducktail-Samples-4-25-2023.txt ├── Ducktail_VT_Hunt_5-1-2023.txt ├── ducktail.yar ├── ducktail_mainbot-12-2023.yar └── ducktail_myrdpservice-12-2023.yar ├── EasyCrypter └── easycrypter.yar ├── FakeBat └── fakebat_powershell.yar ├── FenixBotnet ├── mal_BotnetFenix_Payload.yar └── mal_FenixBotnet_jse.yar ├── GaryStealer └── garystealer-1-3-2024.yar ├── Gh0stRAT └── Gh0stRAT.yar ├── GhostGambit └── GhostGambit.yar ├── GlorySprout └── win_mal_GlorySprout_Stealer.yar ├── GoBitLoader └── win_mal_GoBitLoader.yar ├── IllyrianStealer └── illyrian_stealer.yar ├── JWTL ├── JohnWalkerTexasLoader.yar └── JohnWalkerTexasLoader_v2.yar ├── JinxLoader └── JinxLoader-1-2-2024.yar ├── Koi ├── win_mal_KoiStealer_PS.yar ├── win_mal_Koi_loader.yar └── win_mal_Koi_loader_decrypted.yar ├── LegionLoader ├── LegionLoader_dropper.yar └── legionloader.yar ├── LummaC2 └── LummaC2.yar ├── MeduzaStealer ├── MeduzaStealer.yar └── MeduzaStealer_1-1-2024.yar ├── MetaStealer ├── metastealer.yar ├── metastealer_12-2023_packer.yar └── metastealer_core_payload_12-2023.yar ├── MpxDropper └── mal_win_MpxDropper.yar ├── NarniaRAT └── mal_NarniaRAT.yar ├── NeptuneLoader └── neptune_loader.yar ├── Nitrogen ├── mal_nitrogen.yar └── nitrogen_python311.yar ├── PSWSTEALER ├── PSWSTEALER_IOCs_4-3-2023.txt └── pswstealer.yar ├── PikaBot └── Pikabot_1-2-2024.yar ├── PlanetStealer └── win_mal_PlanetStealer.yar ├── PowerShell Obfuscation └── obfuscation_powershell_special_chars.yar ├── Prysmax Stealer └── prysmax_stealer.yar ├── Pure Logs Stealer ├── purelogs_stealer_core.yar └── purelogs_stealer_initial_payload.yar ├── PureCrypter ├── purecrypter.yar └── purecrypter_core.yar ├── README.md ├── RaccoonStealer_v2 ├── RaccoonStealerv2_DLL_payloads_MD5 ├── raccoonstealer_v2.3.1.1.yar └── raccoonstealerv2_2.1.0-4_build.yar ├── Ransomware └── win_ransom_lockbit5.0.yar ├── RustyDropper └── win_mal_RustyDropper.yar ├── SentinelStealer └── sentinel_stealer.yar ├── SmartApeSG ├── SmartApeSG_JS_NetSupportRAT_stage2.yar └── SmartApeSG_JS_dropper_stage1.yar ├── SolarMarker ├── solardropper.yar ├── solarmarker_backdoor.yar ├── solarmarker_first_stage_payload.yar ├── solarmarker_loader.yar └── solarphantom.yar ├── StealC └── win_mal_StealC_v2.yar ├── SwaetRAT └── swaetrat.yar ├── Techniques ├── check_installed_software.yar ├── golang_base64_enc.yar ├── susp_obf_py_marshal_module.yar └── win_sus_InternetShortcutFile.yar ├── TrueCrypt └── truecrypt_crypter.yar ├── UNC4108 ├── win_mal_Chromium_app_bound_encryption_Decrypter.yar ├── win_mal_Formgrabber.yar ├── win_mal_GhostWeaver.yar ├── win_mal_JuniperStealer.yar ├── win_mal_PreGrabber.yar └── win_mal_mmgrabber.yar ├── VT └── D3F@ck_Loader.yar ├── VanillaTempest ├── win_mal_SupperBackdoor.yar └── win_mal_TextShell.yar ├── VidarStealer └── vidar_ver3.6_3.7_dll_embedded.yar ├── WhiteSnake-Stealer ├── WhiteSnake_rc4.yar └── WhiteSnake_xor.yar ├── WorkersDevBackdoor ├── WorkDevBackdoor.yar └── WorkersDevBackdoor_PS.yar ├── XRed_Backdoor └── mal_xred_backdoor.yar ├── XWorm └── win_mal_XWorm.yar ├── ZharkBot ├── Zharkbot.yar └── zharkbot.yar ├── Zloader └── win_mal_Zloader.yar └── virusloader └── mal_msedge_dll_virusloader.yar /AMOS/amos_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AMOS/amos_stealer.yar -------------------------------------------------------------------------------- /AMOS/amos_stealer_4_25.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AMOS/amos_stealer_4_25.yar -------------------------------------------------------------------------------- /AndeLoader/ande_loader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AndeLoader/ande_loader.yar -------------------------------------------------------------------------------- /AsukaStealer/mal_asuka_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AsukaStealer/mal_asuka_stealer.yar -------------------------------------------------------------------------------- /AtomicStealer/Atomic_Stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AtomicStealer/Atomic_Stealer.yar -------------------------------------------------------------------------------- /AuroraStealer/AuroraStealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AuroraStealer/AuroraStealer.yar -------------------------------------------------------------------------------- /AuroraStealer/Aurora_March_2023.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/AuroraStealer/Aurora_March_2023.yar -------------------------------------------------------------------------------- /BanditStealer/bandit_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/BanditStealer/bandit_stealer.yar -------------------------------------------------------------------------------- /CleanUpLoader/mal_cleanuploader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/CleanUpLoader/mal_cleanuploader.yar -------------------------------------------------------------------------------- /DanaBot/danabot_yara.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/DanaBot/danabot_yara.yar -------------------------------------------------------------------------------- /DarkGate/darkgate_autoit.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/DarkGate/darkgate_autoit.yar -------------------------------------------------------------------------------- /DarkVNC/darkvnc.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/DarkVNC/darkvnc.yar -------------------------------------------------------------------------------- /Ducktail/Ducktail-Samples-4-25-2023.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ducktail/Ducktail-Samples-4-25-2023.txt -------------------------------------------------------------------------------- /Ducktail/Ducktail_VT_Hunt_5-1-2023.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ducktail/Ducktail_VT_Hunt_5-1-2023.txt -------------------------------------------------------------------------------- /Ducktail/ducktail.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ducktail/ducktail.yar -------------------------------------------------------------------------------- /Ducktail/ducktail_mainbot-12-2023.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ducktail/ducktail_mainbot-12-2023.yar -------------------------------------------------------------------------------- /Ducktail/ducktail_myrdpservice-12-2023.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ducktail/ducktail_myrdpservice-12-2023.yar -------------------------------------------------------------------------------- /EasyCrypter/easycrypter.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/EasyCrypter/easycrypter.yar -------------------------------------------------------------------------------- /FakeBat/fakebat_powershell.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/FakeBat/fakebat_powershell.yar -------------------------------------------------------------------------------- /FenixBotnet/mal_BotnetFenix_Payload.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/FenixBotnet/mal_BotnetFenix_Payload.yar -------------------------------------------------------------------------------- /FenixBotnet/mal_FenixBotnet_jse.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/FenixBotnet/mal_FenixBotnet_jse.yar -------------------------------------------------------------------------------- /GaryStealer/garystealer-1-3-2024.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/GaryStealer/garystealer-1-3-2024.yar -------------------------------------------------------------------------------- /Gh0stRAT/Gh0stRAT.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Gh0stRAT/Gh0stRAT.yar -------------------------------------------------------------------------------- /GhostGambit/GhostGambit.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/GhostGambit/GhostGambit.yar -------------------------------------------------------------------------------- /GlorySprout/win_mal_GlorySprout_Stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/GlorySprout/win_mal_GlorySprout_Stealer.yar -------------------------------------------------------------------------------- /GoBitLoader/win_mal_GoBitLoader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/GoBitLoader/win_mal_GoBitLoader.yar -------------------------------------------------------------------------------- /IllyrianStealer/illyrian_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/IllyrianStealer/illyrian_stealer.yar -------------------------------------------------------------------------------- /JWTL/JohnWalkerTexasLoader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/JWTL/JohnWalkerTexasLoader.yar -------------------------------------------------------------------------------- /JWTL/JohnWalkerTexasLoader_v2.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/JWTL/JohnWalkerTexasLoader_v2.yar -------------------------------------------------------------------------------- /JinxLoader/JinxLoader-1-2-2024.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/JinxLoader/JinxLoader-1-2-2024.yar -------------------------------------------------------------------------------- /Koi/win_mal_KoiStealer_PS.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Koi/win_mal_KoiStealer_PS.yar -------------------------------------------------------------------------------- /Koi/win_mal_Koi_loader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Koi/win_mal_Koi_loader.yar -------------------------------------------------------------------------------- /Koi/win_mal_Koi_loader_decrypted.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Koi/win_mal_Koi_loader_decrypted.yar -------------------------------------------------------------------------------- /LegionLoader/LegionLoader_dropper.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/LegionLoader/LegionLoader_dropper.yar -------------------------------------------------------------------------------- /LegionLoader/legionloader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/LegionLoader/legionloader.yar -------------------------------------------------------------------------------- /LummaC2/LummaC2.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/LummaC2/LummaC2.yar -------------------------------------------------------------------------------- /MeduzaStealer/MeduzaStealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MeduzaStealer/MeduzaStealer.yar -------------------------------------------------------------------------------- /MeduzaStealer/MeduzaStealer_1-1-2024.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MeduzaStealer/MeduzaStealer_1-1-2024.yar -------------------------------------------------------------------------------- /MetaStealer/metastealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MetaStealer/metastealer.yar -------------------------------------------------------------------------------- /MetaStealer/metastealer_12-2023_packer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MetaStealer/metastealer_12-2023_packer.yar -------------------------------------------------------------------------------- /MetaStealer/metastealer_core_payload_12-2023.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MetaStealer/metastealer_core_payload_12-2023.yar -------------------------------------------------------------------------------- /MpxDropper/mal_win_MpxDropper.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/MpxDropper/mal_win_MpxDropper.yar -------------------------------------------------------------------------------- /NarniaRAT/mal_NarniaRAT.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/NarniaRAT/mal_NarniaRAT.yar -------------------------------------------------------------------------------- /NeptuneLoader/neptune_loader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/NeptuneLoader/neptune_loader.yar -------------------------------------------------------------------------------- /Nitrogen/mal_nitrogen.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Nitrogen/mal_nitrogen.yar -------------------------------------------------------------------------------- /Nitrogen/nitrogen_python311.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Nitrogen/nitrogen_python311.yar -------------------------------------------------------------------------------- /PSWSTEALER/PSWSTEALER_IOCs_4-3-2023.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PSWSTEALER/PSWSTEALER_IOCs_4-3-2023.txt -------------------------------------------------------------------------------- /PSWSTEALER/pswstealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PSWSTEALER/pswstealer.yar -------------------------------------------------------------------------------- /PikaBot/Pikabot_1-2-2024.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PikaBot/Pikabot_1-2-2024.yar -------------------------------------------------------------------------------- /PlanetStealer/win_mal_PlanetStealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PlanetStealer/win_mal_PlanetStealer.yar -------------------------------------------------------------------------------- /PowerShell Obfuscation/obfuscation_powershell_special_chars.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PowerShell Obfuscation/obfuscation_powershell_special_chars.yar -------------------------------------------------------------------------------- /Prysmax Stealer/prysmax_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Prysmax Stealer/prysmax_stealer.yar -------------------------------------------------------------------------------- /Pure Logs Stealer/purelogs_stealer_core.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Pure Logs Stealer/purelogs_stealer_core.yar -------------------------------------------------------------------------------- /Pure Logs Stealer/purelogs_stealer_initial_payload.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Pure Logs Stealer/purelogs_stealer_initial_payload.yar -------------------------------------------------------------------------------- /PureCrypter/purecrypter.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PureCrypter/purecrypter.yar -------------------------------------------------------------------------------- /PureCrypter/purecrypter_core.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/PureCrypter/purecrypter_core.yar -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/README.md -------------------------------------------------------------------------------- /RaccoonStealer_v2/RaccoonStealerv2_DLL_payloads_MD5: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/RaccoonStealer_v2/RaccoonStealerv2_DLL_payloads_MD5 -------------------------------------------------------------------------------- /RaccoonStealer_v2/raccoonstealer_v2.3.1.1.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/RaccoonStealer_v2/raccoonstealer_v2.3.1.1.yar -------------------------------------------------------------------------------- /RaccoonStealer_v2/raccoonstealerv2_2.1.0-4_build.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/RaccoonStealer_v2/raccoonstealerv2_2.1.0-4_build.yar -------------------------------------------------------------------------------- /Ransomware/win_ransom_lockbit5.0.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Ransomware/win_ransom_lockbit5.0.yar -------------------------------------------------------------------------------- /RustyDropper/win_mal_RustyDropper.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/RustyDropper/win_mal_RustyDropper.yar -------------------------------------------------------------------------------- /SentinelStealer/sentinel_stealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SentinelStealer/sentinel_stealer.yar -------------------------------------------------------------------------------- /SmartApeSG/SmartApeSG_JS_NetSupportRAT_stage2.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SmartApeSG/SmartApeSG_JS_NetSupportRAT_stage2.yar -------------------------------------------------------------------------------- /SmartApeSG/SmartApeSG_JS_dropper_stage1.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SmartApeSG/SmartApeSG_JS_dropper_stage1.yar -------------------------------------------------------------------------------- /SolarMarker/solardropper.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SolarMarker/solardropper.yar -------------------------------------------------------------------------------- /SolarMarker/solarmarker_backdoor.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SolarMarker/solarmarker_backdoor.yar -------------------------------------------------------------------------------- /SolarMarker/solarmarker_first_stage_payload.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SolarMarker/solarmarker_first_stage_payload.yar -------------------------------------------------------------------------------- /SolarMarker/solarmarker_loader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SolarMarker/solarmarker_loader.yar -------------------------------------------------------------------------------- /SolarMarker/solarphantom.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SolarMarker/solarphantom.yar -------------------------------------------------------------------------------- /StealC/win_mal_StealC_v2.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/StealC/win_mal_StealC_v2.yar -------------------------------------------------------------------------------- /SwaetRAT/swaetrat.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/SwaetRAT/swaetrat.yar -------------------------------------------------------------------------------- /Techniques/check_installed_software.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Techniques/check_installed_software.yar -------------------------------------------------------------------------------- /Techniques/golang_base64_enc.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Techniques/golang_base64_enc.yar -------------------------------------------------------------------------------- /Techniques/susp_obf_py_marshal_module.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Techniques/susp_obf_py_marshal_module.yar -------------------------------------------------------------------------------- /Techniques/win_sus_InternetShortcutFile.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Techniques/win_sus_InternetShortcutFile.yar -------------------------------------------------------------------------------- /TrueCrypt/truecrypt_crypter.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/TrueCrypt/truecrypt_crypter.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_Chromium_app_bound_encryption_Decrypter.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_Chromium_app_bound_encryption_Decrypter.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_Formgrabber.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_Formgrabber.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_GhostWeaver.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_GhostWeaver.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_JuniperStealer.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_JuniperStealer.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_PreGrabber.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_PreGrabber.yar -------------------------------------------------------------------------------- /UNC4108/win_mal_mmgrabber.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/UNC4108/win_mal_mmgrabber.yar -------------------------------------------------------------------------------- /VT/D3F@ck_Loader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/VT/D3F@ck_Loader.yar -------------------------------------------------------------------------------- /VanillaTempest/win_mal_SupperBackdoor.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/VanillaTempest/win_mal_SupperBackdoor.yar -------------------------------------------------------------------------------- /VanillaTempest/win_mal_TextShell.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/VanillaTempest/win_mal_TextShell.yar -------------------------------------------------------------------------------- /VidarStealer/vidar_ver3.6_3.7_dll_embedded.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/VidarStealer/vidar_ver3.6_3.7_dll_embedded.yar -------------------------------------------------------------------------------- /WhiteSnake-Stealer/WhiteSnake_rc4.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/WhiteSnake-Stealer/WhiteSnake_rc4.yar -------------------------------------------------------------------------------- /WhiteSnake-Stealer/WhiteSnake_xor.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/WhiteSnake-Stealer/WhiteSnake_xor.yar -------------------------------------------------------------------------------- /WorkersDevBackdoor/WorkDevBackdoor.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/WorkersDevBackdoor/WorkDevBackdoor.yar -------------------------------------------------------------------------------- /WorkersDevBackdoor/WorkersDevBackdoor_PS.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/WorkersDevBackdoor/WorkersDevBackdoor_PS.yar -------------------------------------------------------------------------------- /XRed_Backdoor/mal_xred_backdoor.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/XRed_Backdoor/mal_xred_backdoor.yar -------------------------------------------------------------------------------- /XWorm/win_mal_XWorm.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/XWorm/win_mal_XWorm.yar -------------------------------------------------------------------------------- /ZharkBot/Zharkbot.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/ZharkBot/Zharkbot.yar -------------------------------------------------------------------------------- /ZharkBot/zharkbot.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/ZharkBot/zharkbot.yar -------------------------------------------------------------------------------- /Zloader/win_mal_Zloader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/Zloader/win_mal_Zloader.yar -------------------------------------------------------------------------------- /virusloader/mal_msedge_dll_virusloader.yar: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/RussianPanda95/Yara-Rules/HEAD/virusloader/mal_msedge_dll_virusloader.yar --------------------------------------------------------------------------------