Detection Rule List

Rule Name Rule Type Technique Count Creation Date
YARA_DLLSearchOrderHijacking YARA 1 1 year, 3 months
YARA_ModifyDLLExportName YARA 1 1 year, 3 months
CAPA_Hook_Injection1 CAPA 0 1 year, 3 months
CAPA_Hook_Injection CAPA 0 1 year, 3 months
SIGMA_Hook_Injection SIGMA 1 1 year, 3 months
YARA_Hook_Injection YARA 1 1 year, 3 months
YARA_Detect_Bobsoft YARA 1 1 year, 8 months
YARA_detect_Pespin YARA 1 1 year, 8 months
YARA_Detect_Obsidium YARA 1 1 year, 8 months
YARA_Detect_Pelock YARA 1 1 year, 8 months
YARA_Detect_nspack YARA 1 1 year, 8 months
YARA_Detect_Asprotect YARA 1 1 year, 8 months
YARA_Detect_Crinkler YARA 1 1 year, 8 months
YARA_Detect_Petite YARA 1 1 year, 8 months
YARA_Detect_Aspack YARA 1 1 year, 8 months
YARA_Detect_vmprotect YARA 1 1 year, 8 months
YARA_detect_FSG YARA 1 1 year, 8 months
YARA_Detect_Mew YARA 1 1 year, 8 months
YARA_Detect_Themida YARA 1 1 year, 8 months
YARA_Detect_Exestealth YARA 1 1 year, 8 months
YARA_Detect_MPRESS YARA 1 1 year, 8 months
YARA_Detect_UPX YARA 1 1 year, 8 months
CAPA_Detect_Confuser CAPA 1 1 year, 8 months
CAPA_Detect_vmprotect CAPA 1 1 year, 8 months
CAPA_Detect_Petite CAPA 1 1 year, 8 months
CAPA_Detect_Themida CAPA 1 1 year, 8 months
CAPA_Detect_PeCompact CAPA 1 1 year, 8 months
CAPA_Detect_NSpack CAPA 1 1 year, 8 months
CAPA_Detect_ASPACK CAPA 1 1 year, 8 months
CAPA_Detect_UPX CAPA 1 1 year, 8 months

Filter