Detection Rule List

Rule Name Rule Type Technique Count Creation Date
YARA_Detect_SuspendThread YARA 1 2 years, 1 month
YARA_detect_tlscallback YARA 1 2 years, 1 month
YARA_Check_installed_software YARA 0 2 years, 1 month
YARA_disable_antivirus YARA 0 2 years, 1 month
YARA_DebuggerCheck_GlobalFlags YARA 1 2 years, 1 month
YARA_wiping_event YARA 0 2 years, 1 month
YARA_DebuggerCheck__RemoteAPI YARA 0 2 years, 1 month
YARA_Detect_AntiVMWithTemperature YARA 0 2 years, 1 month
YARA_QEMU_REGISTRY YARA 1 2 years, 1 month
YARA_Shamoon_Wiper YARA 1 2 years, 1 month
YARA_Detect_Possible_GetForegroundWindow_Evasion YARA 0 2 years, 1 month
YARA_disable_process YARA 1 2 years, 1 month
YARA_uac_bypass YARA 1 2 years, 1 month
YARA_Findcrypt YARA 2 2 years, 1 month
YARA_mac_detection YARA 0 2 years, 1 month
YARA_PACKER_antiunpack YARA 2 2 years, 1 month
YARA_VBOX_REGISTRY YARA 1 2 years, 1 month
YARA_SHADOW_COPY_DELETION YARA 1 2 years, 1 month
CAPA_debugger_api CAPA 1 2 years, 1 month
CAPA_debug_register CAPA 1 2 years, 1 month
CAPA_crash_eventlog CAPA 2 2 years, 1 month
CAPA_clear_log CAPA 1 2 years, 1 month
CAPA_timestomp CAPA 0 2 years, 1 month
CAPA_output_debug_string CAPA 1 2 years, 1 month
CAPA_QueryPerformanceCounter CAPA 1 2 years, 1 month
CAPA_device_pipe CAPA 0 2 years, 1 month
CAPA_detect_vm_process CAPA 2 2 years, 1 month
CAPA_stackstring_obf CAPA 0 2 years, 1 month
CAPA_mouse_cursor CAPA 1 2 years, 1 month
CAPA_ntglobalflag CAPA 1 2 years, 1 month

Filter