RussianPanda95/Yara-Rules

GitHub: RussianPanda95/Yara-Rules

一份覆盖多款流行窃取器与远控木马的Yara规则集合,用于提升威胁检测与情报分析效率。

Stars: 141 | Forks: 15

### Yara规则: - **Aurora Stealer** - **Bandit Stealer** - **Ducktail** - **Meduza Stealer** - **MetaStealer** - **Nitrogen** - **PSWSTEALER** - **RaccoonStealerv2** - **SolarMarker** - **Vidar Stealer** - **WhiteSnake Stealer** - **SwaetRAT** - **DanaBot** - **FakeBat** - **Ande Loader** - **WorkersDevBackdoor** - **Pure Logs Stealer** - **PikaBot** - **JinxLoader** - **GaryStealer** - **Illyrian Stealer** - **PureCrypter** - **Prysmax Stealer** - **Base64 Obfuscation** - **SmartApeSG** - **PowerShell Special Character Obfuscation** - **Atomic Stealer** - **Neptune Loader** - **FenixBotnet** - **XRed Backdoor** - **virusloader** - **SentinelStealer** - **ZharkBot** - **NarniaRAT** - **AsukaStealer** - **CleanUpLoader** - **D3F@ck Loader** - **RustyDropper** - **MpxDropper** - **Zloader** - **GlorySprout** - **GoBitLoader** - **Koi Stealer** - **Koi Loader**
标签:Ande Loader, APT, AsukaStealer, Atomic Stealer, Aurora Stealer, Bandit Stealer, Base64 Obfuscation, Base64混淆, BurpSuite集成, CleanUpLoader, Cookie窃取, D3F@ck Loader, DanaBot, DNS通配符暴力破解, Ducktail, FakeBat, FenixBotnet, GaryStealer, GlorySprout, GoBitLoader, Illyrian Stealer, JinxLoader, Koi Loader, Koi Stealer, Meduza Stealer, MetaStealer, MpxDropper, NarniaRAT, Neptune Loader, Nitrogen, PikaBot, PowerShell Special Character Obfuscation, PowerShell混淆, Prysmax Stealer, PSWSTEALER, PureCrypter, Pure Logs Stealer, RaccoonStealer v2, RAT, RustyDropper, SentinelStealer, SmartApeSG, SolarMarker, SwaetRAT, URL收集, Vidar Stealer, virusloader, WhiteSnake Stealer, WorkersDevBackdoor, XRed Backdoor, Yara规则, ZharkBot, Zloader, 下载器, 云资产清单, 代码混淆, 信息窃取, 僵尸网络, 内存窃取, 剪贴板窃取, 加载器, 后门, 多态恶意软件, 威胁情报, 开发者工具, 恶意软件, 攻击载体, 日志清理, 样本分析, 横向移动, 浏览器窃取, 特洛伊木马, 窃取器, 编程规范, 逆向工具, 逆向工程, 键盘记录