Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update Arkei.yar Yara Rule #2458

Open
wants to merge 2 commits into
base: master
Choose a base branch
from
Open

Conversation

YungBinary
Copy link
Contributor

Update Arkei.yar Yara Rule

@YungBinary
Copy link
Contributor Author

@kevoreilly I found out if this is merged then Arkei payloads will show matches for both Arkei and StealC. You might want to take a different approach but perhaps you might want to tighten the StealC yara rule so it doesn't match Arkei samples? I uploaded an unpacked Arkei sample into the test files repo at https://github.com/CAPESandbox/CAPE-TestFiles/blob/main/malware/69ba4e2995d6b11bb319d7373d150560ea295c02773fe5aa9c729bfd2c334e1e

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant