Multilingual | File size: 55.2 MB
Yara has become a pretty popular standard in the Anti-malware industry to write signatures for malware detections. Many Anti-malware vendors, sandboxes vendors, HIPS vendors, CERTs or IT administrators are using rules to either detect malware based on the file, or to analyze network packets and trigger an alert when something malicious occurs.
Yara is a signature syntax and scanning engine, it's available with a library or a bunch of scripts. We, at Adlice Software, are specialized in making Yara easy and convenient to use. We are offering a desktop application to write, organize and test your rules into a local database, or in text files.
FEATURES
Syntax highlighting.
Drag N drop support.
Write yara signatures in a complete IDE.
Compile rules and fix your errors.
Test your rules against strings (ANSI/Unicode).
Test your rules by scanning processes memory.
Test your rules by scanning files.
Test your rules by scanning folders.
What's new :
Updated to core 4.1.3
* Updated libraries (openssl / libssh2 / libcurl /libyara)
* Fixed an issue in Path parser
* Fixed a possible crash in Buffer module (implicitcasts)
* Reduced API calls frequency
* Fixed possible crash at exit
* Fix for getting username from SYSTEM account
* Fixes for scheduler engine
* Fix for telemetry
* Fixed bad reference decrement in Yara scanner
* Fixed initialization order in worker threads
* Fixed ACLs removal in Debug module
* Minor fixes
- Added button to toggle selection of files
- Added ability to import folder (recursive)
- Fixed crash (assert error) on compilation
- Added gamer mode (no notifications during full screen)
发布日期: 2020-03-07