Evasive Malware Detection mit YARA: Revision history

Diff selection: Mark the radio buttons of the revisions to compare and hit enter or the button at the bottom.
Legend: (cur) = difference with latest revision, (prev) = difference with preceding revision, m = minor edit.

19 January 2026

  • curprev 19:5519:55, 19 January 2026PPfaffl talk contribs 4,265 bytes +4,265 Created page with "== Summary == This documentation describes the setup of a malware analysis environment and the methodology for detecting evasive malware using static analysis with YARA. The focus is on identifying byte patterns (hardware instructions) and suspicious strings in order to distinguish evasive malware from legitimate software. == Requirements == * VirtualBox * YARA * Windows 10 * 6 evasive malware samples * 6 additional malware samples * 6 benign .exe files (Windows syst..."