Posts Tagged ‘IDS’

Yara - identify and classify malware samples toolkit

Thursday, March 12th, 2009

This is a nice project start by Victor Alvarez which can be found at http://code.google.com/p/yara-project.

This project describe as a tool aimed at helping malware researchers to identify and classify malware samples.  This tool work similar to IDS system with a nice scripting support which allow the user to add complex signature to the rule set.