Video: YARA Rules for Office Maldocs
In this video, I show and explain the YARA rules I covered in diary entries "Extra Tip For Triage Of MALWARE Bazaar's Daily Malware Batches" , "Simple YARA Rules for Office Maldocs" and "YARA Rule for OOXML Maldocs: Less False Positives".
Didier Stevens
Senior handler
Microsoft MVP
blog.DidierStevens.com
×
Diary Archives
Comments