Category Archives: YARA

Yara python module – part 003 .

You can test your yara rules by using first the yara command tool from windows or linux. The last version come with source code :

For example this rule show us how to find files by size:

This rule find files by specify the size conditions MB, KB and return the result. Then… Read More »

Yara python module – part 001 .

YARA is a multi-platform program running on Windows, Linux and Mac OS X. More about yara python module can be see it here YARA used this keywords with rules under files.

The Yara documentation can be found in this link. The yara python module use version 1.7.7 and this will need to use when… Read More »