Hi everyone! A nice Malware analyzer! Latest release YARA v1.2
If you are a learning about malware behaviour or need more information about malware working , this tool is for you
With YARA you can create descriptions of malware families based on textual or binary patterns contained on samples of those families.
The description you get will contain a set of strings and a Boolean expression which determines the its logic
YARA is also multi-platform so don’t worry enjoy it on your own platform let it be Windows, Linux or Mac OS X.
Features supported:
Sub-string alternatives in hex strings.Global rules.Enhanced “of” operator and a new “for..of” operatorAnonymous stringsuintXX and intXX functions to read integers from a given offsetyara-python improvementsA Sample ZBot rule:
<pre>rule zbot : banker
{
strings:
$a = “__SYSTEM__” wide
$b = “*tanentry*”
$c = “*<option”
$d = “*<select”
$e = “*<input”
condition:
($a and $b) or ($c and $d and $e)
}</pre>
Download YARA v1.2 here
To exploit the vulnerability, an attacker must convince a user to view a malicious website. The attacker may employ social engineering tactics to persuade a targeted user to visit a malicious website. The tactics may include sending users a link to the site by means of an e-mail message, instant messaging, or other forms of communication.
If you enjoyed this article, you might also like:
- May 14, 2010 -- UPDATE: YARA v1.4!
Good news for Yara lovers! YARA version 1.4 has been released just a few hours ago! We mentioned abo... - May 10, 2010 -- UPDATE: YARA v1.3!
Being humans, we just forgot to mention about an important YARA release - version 1.3. We mentioned ... - June 13, 2010 -- soluto : Anti Frustration software
Using a PC can be a deeply frustrating experience. We have all come to expect our computers to be s... - September 15, 2009 -- Rising PC Doctor – detect, clean, analysis all kinds of malware , hijakers and cyberthreats
Rising PC Doctor, professional and smart security tool to computer users. With its seven key functi... - June 20, 2009 -- SysAnalyzer – system and malware analyzer tool
SysAnalyzer windows malware analyzer an automated malcode run time analysis application that monitor...
Tagged as: analyze malware, malware analyzer, malware removal, YARA, YARA malware analyzer
Comments on this entry are closed.