Yara Decompressor Logo

Yara Decompressor

A tool that enables Yara rule execution against compressed malware samples, supporting GZip, BZip2, and LZMA formats without manual decompression.

7
Visit website
Compare
Compare
0
MCPThe entire cybersecurity market, one prompt awayTry MCP Access

Yara Decompressor Description

Yara Decompressor is a specialized tool designed to run Yara rules against compressed malware samples without requiring manual decompression. The tool supports multiple compression formats including GZip, BZip2, and LZMA (XZ). Built using Go-Yara and XZ modules, the tool is statically compiled against libyara for portability and ease of deployment. It operates by processing rule files against directories containing compressed malware samples, automatically handling the decompression process during analysis. The tool addresses the common challenge faced by malware analysts who need to test Yara rules against compressed samples on systems with varying Yara installations. Currently, it processes rule files against entire directories of files in a batch operation. Future development plans include expanding support for additional archive formats such as Zip and Tar files, as well as handling password-protected Zip and 7z archives with common password testing capabilities.

Yara Decompressor FAQ

Common questions about Yara Decompressor including features, pricing, alternatives, and user reviews.

Yara Decompressor is A tool that enables Yara rule execution against compressed malware samples, supporting GZip, BZip2, and LZMA formats without manual decompression.. It is a Security Operations solution designed to help security teams with YARA.

Have more questions? Browse our categories or search for specific tools.

ALTERNATIVES

Cyber Triage Malware Forensics Tool Logo

Malware scanning tool for DFIR using 40+ engines from ReversingLabs

0
ReversingLabs Spectra Analyze Logo

Malware analysis platform for SOC teams with binary analysis and threat detection

0
Cyber Triage Enterprise Logo

DFIR platform for endpoint triage & investigation with EDR telemetry import

0
AISI DFIR Logo

Managed DFIR service with proprietary tools for forensics & IR.

0
GLIMPS Malware Expert Logo

Deep learning-based malware analysis & threat contextualization platform.

0

Stay Updated with Mandos Brief

Get strategic cybersecurity insights in your inbox