EmersonElectricCo / fsf

File Scanning Framework
Apache License 2.0
285 stars 49 forks source link

Sanitizing iframe src tag in misc_hexascii_pe_in_html.yara #46

Closed akniffe1 closed 7 years ago

akniffe1 commented 7 years ago

This change only affects the sig comments--there is no impact on signature functionality.

Hopefully this will prevent the fairly frequent occurrence of commercial AV flagging this signature as malicious due to the iframe src tag's url (facepalm AV)

ref #45