Neo23x0 / signature-base

YARA signature and IOC database for my scanners and tools
Other
2.47k stars 604 forks source link

Add gen_vcruntime140_dll_sideloading.yar #284

Closed cod3nym closed 1 year ago

cod3nym commented 1 year ago

Rules covering DLL sideloading of VCRUNTIME140.dll used by malware like JanelaRAT