-
We noticed a problem with the process memory scanning on Windows 10 when using the 64bit version of YARA. (also counts for Python and Golang bindings)
To reproduce:
YARA 3.7.x process memory sc…
-
**Issue by [Abasalt-yar](https://github.com/Abasalt-yar)**
_Wednesday Aug 01, 2018 at 10:25 GMT_
_Originally opened as https://github.com/adobe/brackets/issues/14497_
----
what are the red circles …
-
yar协议碰到中文之后,在php端出现unpack error
-
Hello,
I would like to inform you that the rule SUSP_PowerShell_Download_Temp_Rundll is duplicated:
- [Yara/Filetypes/powershell.yar](https://github.com/SIFalcon/Detection/blob/2d7c66d7d16c7541b…
-
https://github.com/atom/encoding-selector/issues/65
### Steps to Reproduce
https://github.com/malice-plugins/yara/blob/17a4fc946febe8b002e285f591bcb21b92a99e9e/rules/userdb_panda.yar
- Open in A…
-
PHP 8.1.1
Centos 7.9
yar 2.2.1
yaf 3.3.4
$RPCclient = new \Yar_Client(API_CONFIG . "/Brand/base");
$result = $RPCclient->moGetMany('material_brand', [], [], '', $page, $pageSize…
-
```
$ python page_brute-BETA.py -r cmd_optimistic_blanks.yar -f pagefile.sys
[+] - PAGE_BRUTE processing file: pagefile.sys
Traceback (most recent call last):
File "page_brute-BETA.py", line 227, in…
-
This issue is to track the progress of the PECL builds we are doing
Here is the list of extensions built so far
- amqp
- apcu
- apfd
- ast
- base58
- bitset
- couchbase
- crypto
- CSV
- d…
-
Hello.
I have created a python script to integrate the rules if this repository and running them on some samples.
I already changed the relative path of the "index.yar" as it shown [VirusTotal/y…
-
```
Traceback (most recent call last):
File "script_ganker.py", line 135, in
family_name = yara_scan(script_path)
File "script_ganker.py", line 28, in yara_scan
yararule = yara.compi…