Last active
July 1, 2017 00:53
-
-
Save Neo23x0/7ff267390d0670998e9c481c22ab0071 to your computer and use it in GitHub Desktop.
YARA Rule for Petya Ransomware - June 2017
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
I just pushed the rule to "signature-base" | |
https://github.com/Neo23x0/signature-base/blob/master/yara/crime_nopetya_jun17.yar | |
Some of the other rules are running in QS right now. | |
I'll update the 'crime_nopetya_jun17.yar' file frequently. |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Find the updated ruleset here.