Detection Rule List

Rule Name Rule Type Technique Count Creation Date
Detect CreateThreadpoolWait Usage YARA 1 3 years, 3 months
Detect XOR Patterns YARA 1 3 years, 4 months
Detect Shortcut Cloaking YARA 1 3 years, 4 months
Detect GetModuleFileName Usage YARA 1 3 years, 4 months
Detect Sysmon Evasion YARA 1 3 years, 4 months
Detect Parent Process Identification YARA 1 3 years, 4 months
Detect Interrupts YARA 1 3 years, 4 months
Detect DLL Proxying YARA 1 3 years, 4 months
Detect DLLSearchOrderHijacking YARA 1 3 years, 4 months
Detect DLL Export Name Modification YARA 1 3 years, 4 months
Detect Hook Injection 4 YARA 1 3 years, 4 months
Detect BobSoft Packer YARA 1 3 years, 9 months
Detect PESpin Packer YARA 1 3 years, 9 months
Detect Obsidium Protector YARA 1 3 years, 9 months
Detect PELock Protector YARA 1 3 years, 9 months
Detect NSPack Packer 2 YARA 1 3 years, 9 months
Detect ASProtect Packer YARA 1 3 years, 9 months
Detect Crinkler Packer YARA 1 3 years, 9 months
Detect Petite Packer 2 YARA 1 3 years, 9 months
Detect ASPack Packer YARA 1 3 years, 9 months
Detect VMProtect Protector YARA 1 3 years, 9 months
Detect FSG Packer YARA 1 3 years, 9 months
Detect Mew Packer YARA 1 3 years, 9 months
Detect Themida Protector YARA 1 3 years, 9 months
Detect ExeStealth Protector YARA 1 3 years, 9 months
Detect MPRESS Packer YARA 1 3 years, 9 months
UPX Packer YARA 1 3 years, 9 months
Detect NtLoadDriver Usage YARA 1 3 years, 9 months
Detect OllyDbg Detection via FindWindow YARA 1 3 years, 9 months
Detect LocalSize Debug Check YARA 1 3 years, 9 months
Filter