Detection Rule List

Rule Name Rule Type Technique Count Creation Date
YARA_Detect_Bobsoft YARA 1 1 week, 1 day
YARA_detect_Pespin YARA 1 1 week, 1 day
YARA_Detect_Obsidium YARA 1 1 week, 1 day
YARA_Detect_Pelock YARA 1 1 week, 1 day
YARA_Detect_nspack YARA 1 1 week, 1 day
YARA_Detect_Asprotect YARA 1 1 week, 1 day
YARA_Detect_Crinkler YARA 1 1 week, 1 day
YARA_Detect_Petite YARA 1 1 week, 1 day
YARA_Detect_Aspack YARA 1 1 week, 1 day
YARA_Detect_vmprotect YARA 1 1 week, 1 day
YARA_detect_FSG YARA 1 1 week, 1 day
YARA_Detect_Mew YARA 1 1 week, 1 day
YARA_Detect_Themida YARA 1 1 week, 1 day
YARA_Detect_Exestealth YARA 1 1 week, 1 day
YARA_Detect_MPRESS YARA 1 1 week, 1 day
YARA_Detect_UPX YARA 1 1 week, 1 day
CAPA_Detect_Confuser CAPA 1 1 week, 1 day
CAPA_Detect_vmprotect CAPA 1 1 week, 1 day
CAPA_Detect_Petite CAPA 1 1 week, 1 day
CAPA_Detect_Themida CAPA 1 1 week, 1 day
CAPA_Detect_PeCompact CAPA 1 1 week, 1 day
CAPA_Detect_NSpack CAPA 1 1 week, 1 day
CAPA_Detect_ASPACK CAPA 1 1 week, 1 day
CAPA_Detect_UPX CAPA 1 1 week, 1 day
CAPA_Detect_QEMU CAPA 0 1 week, 1 day
CAPA_Check_SandboxProcess CAPA 1 1 week, 1 day
CAPA_Detect_FileMelt CAPA 1 1 week, 1 day
CAPA_Detect_Timestomp CAPA 1 1 week, 1 day
CAPA_FileVersion_Impersonation CAPA 1 1 week, 1 day
CAPA_check_PPID CAPA 1 1 week, 1 day

Filter