diff --git a/antidebug_antivm_index.yar b/antidebug_antivm_index.yar index c37e4043..396913dc 100644 --- a/antidebug_antivm_index.yar +++ b/antidebug_antivm_index.yar @@ -1,5 +1,5 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./antidebug_antivm/antidebug_antivm.yar" diff --git a/capabilities_index.yar b/capabilities_index.yar index 3cc4e06b..f3e09079 100644 --- a/capabilities_index.yar +++ b/capabilities_index.yar @@ -1,5 +1,5 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./capabilities/capabilities.yar" diff --git a/crypto_index.yar b/crypto_index.yar index 30f8ed7a..49ac1691 100644 --- a/crypto_index.yar +++ b/crypto_index.yar @@ -1,5 +1,5 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./crypto/crypto_signatures.yar" diff --git a/cve_rules_index.yar b/cve_rules_index.yar index 37ea157f..a00b2d12 100644 --- a/cve_rules_index.yar +++ b/cve_rules_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./cve_rules/CVE-2010-0805.yar" include "./cve_rules/CVE-2010-0887.yar" diff --git a/email_index.yar b/email_index.yar index fdf269e3..7972bd30 100644 --- a/email_index.yar +++ b/email_index.yar @@ -1,8 +1,11 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./email/EMAIL_Cryptowall.yar" +include "./email/Email_fake_it_maintenance_bulletin.yar" +include "./email/Email_generic_phishing.yar" +include "./email/Email_quota_limit_warning.yar" include "./email/attachment.yar" include "./email/bank_rule.yar" include "./email/email_Ukraine_BE_powerattack.yar" @@ -10,6 +13,3 @@ include "./email/extortion_email.yar" include "./email/image.yar" include "./email/scam.yar" include "./email/urls.yar" -include "./email/Email_fake_it_maintenance_bulletin.yar" -include "./email/Email_generic_phishing.yar" -include "./email/Email_quota_limit_warning.yar" diff --git a/exploit_kits_index.yar b/exploit_kits_index.yar index 0084ba9d..b6dc35df 100644 --- a/exploit_kits_index.yar +++ b/exploit_kits_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./exploit_kits/EK_Angler.yar" include "./exploit_kits/EK_Blackhole.yar" diff --git a/index.yar b/index.yar index 7adc2516..6a0de7aa 100644 --- a/index.yar +++ b/index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./antidebug_antivm/antidebug_antivm.yar" include "./capabilities/capabilities.yar" @@ -20,6 +20,9 @@ include "./cve_rules/CVE-2017-11882.yar" include "./cve_rules/CVE-2018-20250.yar" include "./cve_rules/CVE-2018-4878.yar" include "./email/EMAIL_Cryptowall.yar" +include "./email/Email_fake_it_maintenance_bulletin.yar" +include "./email/Email_generic_phishing.yar" +include "./email/Email_quota_limit_warning.yar" include "./email/attachment.yar" include "./email/bank_rule.yar" include "./email/email_Ukraine_BE_powerattack.yar" @@ -27,9 +30,6 @@ include "./email/extortion_email.yar" include "./email/image.yar" include "./email/scam.yar" include "./email/urls.yar" -include "./email/Email_fake_it_maintenance_bulletin.yar" -include "./email/Email_generic_phishing.yar" -include "./email/Email_quota_limit_warning.yar" include "./exploit_kits/EK_Angler.yar" include "./exploit_kits/EK_Blackhole.yar" include "./exploit_kits/EK_BleedingLife.yar" diff --git a/index_w_mobile.yar b/index_w_mobile.yar index 859530f8..6a0de7aa 100644 --- a/index_w_mobile.yar +++ b/index_w_mobile.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./antidebug_antivm/antidebug_antivm.yar" include "./capabilities/capabilities.yar" @@ -20,6 +20,9 @@ include "./cve_rules/CVE-2017-11882.yar" include "./cve_rules/CVE-2018-20250.yar" include "./cve_rules/CVE-2018-4878.yar" include "./email/EMAIL_Cryptowall.yar" +include "./email/Email_fake_it_maintenance_bulletin.yar" +include "./email/Email_generic_phishing.yar" +include "./email/Email_quota_limit_warning.yar" include "./email/attachment.yar" include "./email/bank_rule.yar" include "./email/email_Ukraine_BE_powerattack.yar" diff --git a/maldocs_index.yar b/maldocs_index.yar index c8bbbe13..207a3b2e 100644 --- a/maldocs_index.yar +++ b/maldocs_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./maldocs/Maldoc_APT10_MenuPass.yar" include "./maldocs/Maldoc_APT19_CVE-2017-1099.yar" diff --git a/malware_index.yar b/malware_index.yar index 3b8077ef..6e6034eb 100644 --- a/malware_index.yar +++ b/malware_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./malware/000_common_rules.yar" include "./malware/APT_APT1.yar" diff --git a/mobile_malware_index.yar b/mobile_malware_index.yar index db54133f..a8b973c1 100644 --- a/mobile_malware_index.yar +++ b/mobile_malware_index.yar @@ -1,4 +1,4 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ diff --git a/packers_index.yar b/packers_index.yar index 2c176765..a7d21e5a 100644 --- a/packers_index.yar +++ b/packers_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./packers/JJencode.yar" include "./packers/Javascript_exploit_and_obfuscation.yar" diff --git a/webshells_index.yar b/webshells_index.yar index 3a7dedfa..261669b7 100644 --- a/webshells_index.yar +++ b/webshells_index.yar @@ -1,6 +1,6 @@ /* Generated by Yara-Rules -On 12-05-2020 +On 21-06-2020 */ include "./webshells/WShell_APT_Laudanum.yar" include "./webshells/WShell_ASPXSpy.yar"