yara-project
Am Thursday, 28. Jul 2011 im Topic 'Malware Search'
YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families based on textual or binary patterns contained on samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic.
Download
http://code.google.com/p/yara-project/downloads/list
Info
Extracting EXE Drop Malware
http://blogs.cisco.com/security/extracting-exe-drop-malware/
Download
http://code.google.com/p/yara-project/downloads/list
Info
Extracting EXE Drop Malware
http://blogs.cisco.com/security/extracting-exe-drop-malware/